This popular AI agent could be hacked by a single email — with potentially disastrous consequences
CybersecurityInformation Systems
THE AI ANGLE
Executing obfuscated code embedded in emailsSalt Labs researchers bypassed protections in the Manus AI agent by hiding obfuscated code in an email. The agent executed the JavaScript payload before flagging the threat. Security teams must restrict tool privileges rather than relying on prompt filtering alone.
THE TEACHING ANGLE
Granting AI agents access to third-party communication channels creates a conflict between autonomous utility and code execution security.Read the original at techradar.com Generate teaching or study materials
More in Cybersecurity
- Presentation: Building GenAI Platform at DoorDashInfoQ · October 3, 2026
- AI Agents Are Disrupting Open Source Security DisclosureInfoQ · October 3, 2026
- Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agentsTechCrunch · October 3, 2026
- OpenAI says its review into hacks, including on Australian government sites, is costing $500,000 a dayThe Guardian — Technology · October 3, 2026
- OpenAI's wandering AI agents earn it a California subpoenaThe Register · October 3, 2026