AgentFlayer (enterprise agents, Zenity Labs)

Reddit r/artificial Events

Summary

At Black Hat USA 2025, Zenity Labs demonstrated how enterprise AI agents can be manipulated to exfiltrate data through poisoned documents, affecting systems like ChatGPT and Copilot Studio.

At Black Hat USA in August 2025, Zenity Labs showed a single poisoned document or message could drive an enterprise agent’s connectors to exfiltrate data. The demonstrations spanned several vendors. In one, ChatGPT Connectors read API keys out of a connected Drive and leaked them through a crafted image URL. In another, a Copilot Studio agent emailed a knowledge-base file and Salesforce records to the attacker. Learn More: AI Agent Tool Misuse & Exploitation: When an Agent's Own Tools Do the Damage
Original Article

Similar Articles