Command Palette
Search for a command to run...

ChatGPT Flaw Lets Phishing Link Plant Rogue Workspace Agent to Hijack Corporate Mailboxes

aiai-governanceai-legal-safetytechcybersecurityai-productsai-agents-coding 4 posts · 4 accounts

A newly disclosed vulnerability dubbed AgentForger allows a single phishing link to install a rogue agent within ChatGPT Workspace. The flaw enables the malicious program to attach to existing corporate connectors, disable approval prompts, run every hour, and receive new commands directly from the victim’s email mailbox.

The vulnerability highlights how a single external link can bypass standard security controls to insert persistent AI tools into enterprise environments. The disclosed mechanism allows the rogue program to operate continuously under the target employee’s account, potentially granting unauthorized access to internal communication channels.

From the sources (4 posts)

@rez0__

RT @TakSec: Excited to finally share this ChatGPT vulnerability with everyone! AgentForger: ChatGPT Cross-Site Agent Forgery 1-Click hija…

@p1njc70r

RT @TakSec: Excited to finally share this ChatGPT vulnerability with everyone! AgentForger: ChatGPT Cross-Site Agent Forgery 1-Click hija…

@zenitysec

One link. One forged AI agent with a real employee's identity and access. That's what AgentForger revealed in ChatGPT Workspace Agents. See how Zenity's AISPM + AIDR catch it at every stage 👉 #AIAgentSecurity #AISec

@thehackersnews

🚨 One phishing link could have planted a rogue ChatGPT Workspace Agent inside an organization. New AgentForger flaw could attach existing connectors, turn off approval prompts, run every hour, and take new commands from the victim’s mailbo

Preview built on a synthetic news corpus (16 weeks, Apr–Jul 2026). Impact calls are model reads, not price data.

About Archive