COINTURK NEWSCOINTURK NEWSCOINTURK NEWS
  • Crypto Tracker App
  • Bitcoin
  • Altcoin
  • Ethereum
  • Advertise
  • Contact
  • TURTURTUR
  • ESESES
Search
© 2024 COINTURK NEWS. All Rights Reserved.
Reading: OpenAI fixes AgentForger flaw, one click could create fake employee in any ChatGPT Workspace
Share
Font ResizerAa
COINTURK NEWSCOINTURK NEWS
Font ResizerAa
Search
  • Crypto Tracker App
  • Bitcoin
  • Altcoin
  • Ethereum
  • Advertise
  • Contact
  • TURTURTUR
  • ESESES
Follow US
© 2025 >> COINTURK NEWS
Powered by LK SOFTWARE
COINTURK NEWS > Chainlink (LINK) > OpenAI fixes AgentForger flaw, one click could create fake employee in any ChatGPT Workspace
Chainlink (LINK)

OpenAI fixes AgentForger flaw, one click could create fake employee in any ChatGPT Workspace

In Brief

  • 🚨 One click could create a fake employee in any ChatGPT Workspace via AgentForger.

  • 🛡️ Zenity Labs found attackers could plant an autonomous agent with full access across platforms.

  • ⚡ OpenAI fixed the issue within four days and will retire the vulnerable Agent Builder this year.

  • 💡 This flaw highlights the growing risks as companies connect internal systems with $XAI tools.
Onur Atam
Onur Atam 58 minutes ago
Share
SHARE

Security researchers from Zenity Labs revealed a critical vulnerability in OpenAI’s ChatGPT Workspace Agents that allowed attackers to install a fully autonomous AI agent inside a company’s environment using just one crafted link. The flaw could grant external actors persistent, insider-level access to corporate systems via ChatGPT’s Agent Builder platform.

1StepSwap
Tokenized Stock
ETH ETH
SOL SOL
BSC BSC
Robinhood ROBINHOOD
PAY
USDT USDT
↓
RECEIVE
AAPL AAPL
Contents
Discovery by Zenity LabsRisks and Potential ImpactResponse and RemediationWider Security Context

Discovery by Zenity Labs

Zenity Labs, an Israeli cybersecurity firm focused on AI-related attack surfaces, discovered the issue within ChatGPT’s Agent Builder—a tool enabling companies to create workflow-capable agents inside their internal ChatGPT workspaces. The vulnerability, dubbed AgentForger, exploited two URL parameters within the builder’s initialization step.

One parameter allowed selection of the agent template, which defaulted to a highly privileged “Chief of Staff” agent. The second, named initial_assistant_prompt, could be used to input instructions that were implemented automatically as soon as the Agent Builder loaded in the browser. When chained together, these manipulated parameters let an attacker create a link. If a user already logged into ChatGPT Workspace Agents clicked it, the system would silently spin up an autonomous agent tied to that person’s account and access privileges, set to check the attacker’s commands every five minutes and execute them without detection.

Mini dictionary: Zenity Labs—a cybersecurity company specialized in securing enterprise AI tools and preventing attacks related to AI platforms and agents.

Risks and Potential Impact

Unlike a typical cross-site request forgery—where a single unauthorized action is triggered—AgentForger resulted in the establishment of a fully operational, persistent agent that impersonated an employee with legitimate access. Zenity Labs co-founder and CTO Michael Bargury emphasized the significance of the threat, stating that this approach enabled attackers to plant an “autonomous agent inside your company that has your people’s identity and access.”

Michael Bargury described the situation as far more serious than a simple forged request, noting that a single click could provide attackers with sustained access, acting as a ‘forged insider’ with disabled guardrails.

For the exploit to succeed, the targeted employee needed to be logged into ChatGPT with Workspace Agents enabled and at least one enterprise connector, such as Outlook, Gmail, Slack, or SharePoint, pre-authorized. No additional security prompts warned users of unusual activity in this scenario. Zenity Labs demonstrated that attackers could use the rogue agent to exfiltrate documents, map internal structures, steal credentials, and impersonate victims across connected platforms.

Attack RequirementTraditional PhishingAgentForger Exploit
User InteractionClick link, enter credentialsClick single crafted link
Access LevelLimited, one-timePersistent, full employee access
DetectionNoticeable (login prompt)Invisible (no prompt)

Response and Remediation

Zenity Labs disclosed the vulnerability to OpenAI via the Bugcrowd program on June 4, 2026. OpenAI confirmed the report the next day and released a security fix by June 8, removing the dangerous URL parameter handler. Both organizations stated they found no evidence the vulnerability had been exploited before mitigation.

OpenAI further announced it would deprecate the legacy Agent Builder tool on November 30, 2026, shifting users toward its newer Agents SDK and Workspace Agents interface for improved safety.

Wider Security Context

Security professionals have begun referring to vulnerabilities like AgentForger as part of a ‘lethal trifecta’: accepting untrusted inputs, connecting to sensitive internal data, and permitting unmonitored data exfiltration. This combination can turn the helpful automation of AI agents into significant risks for organizations.

Unlike recent incidents involving AI models circumventing system boundaries or breaking sandbox controls, AgentForger demonstrates how attackers can exploit the trust built into agent platforms, particularly when convenience features like instant setup and pre-authorized connectors are present. Researchers expect to see ongoing scrutiny as more companies transition to autonomous agent platforms with deep integration across enterprise environments.

The AgentForger exploit is being viewed as a sign of larger, structural risks as the adoption of agent-builder tools accelerates, with industry experts warning that attack surfaces will likely expand in the coming years.

You can follow our news on X, Telegram, Facebook & Coinmarketcap
Disclaimer: The information contained in this article does not constitute investment advice. Investors should be aware that cryptocurrencies carry high volatility and therefore risk, and should conduct their own research.

You Might Also Like

Chainlink whale moves $9.23 million in LINK to Coinbase after accumulation

Chainlink rallies 7% to $9.48, multiple charts highlight $11 target and resistance

Chainlink surges toward $9 as holder count hits record 3.96 million

Chainlink’s MVRV golden cross triggers bullish reversal hopes, LINK tests $8.80 resistance

Chainlink climbs 10% in a week as open interest rises to $569 million

Onur Atam 17 August, 2026 - 7:31 am 17 August, 2026 - 7:31 am
Share This Article
Facebook Twitter
Share
Onur Atam
By Onur Atam
Follow:
The author, who is an attorney, specializes primarily in Information Technology Law and Commercial Law. His areas of interest include internet technologies, the cryptocurrency ecosystem, blockchain applications, and next-generation financial technologies.He closely follows developments in digital assets, cryptocurrency regulations, fintech applications, e-commerce, data security, and areas where technology intersects with the law. His goal is to provide a clear and accessible analysis of current developments in the fields of cryptocurrency and financial technologies from a legal perspective.
Previous Article XRP holds key trendline as SBI Shinsei Bank launches retail rewards program
Next Article Gold rises toward $4,400 as weaker dollar fuels demand, Fed decision in focus
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Stay Connected

8.1k Like
21.1k Follow
1.1k Follow

Latest News

Gold rises toward $4,400 as weaker dollar fuels demand, Fed decision in focus
GOLD
XRP holds key trendline as SBI Shinsei Bank launches retail rewards program
Ripple (XRP)
BNB tests $600 resistance as tokenized stocks on BNB Chain gain $164.5 million
Binance Coin (BNB)
//

COINTURK was launched in March 2014 by a group of technology enthusiasts who believe that Bitcoin will be as important as the internet in the world of the future thanks to the amazing technology underlying it.

CRYPTOCURRENCY LIVE PRICES

  • Bitcoin (BTC) Live Price
  • Ethereum (ETH) Live Price
  • Ripple (XRP) Live Price
  • Solana (SOL) Live Price
  • Dogecoin (DOGE) Live Price
  • Cardano (ADA) Live Price
  • Chainlink (LINK) Live Price

OUR PARTNERS

  • COINMARKETCAP
  • COINGECKO
  • BITCOINHABER
  • BH NEWS
  • 21MILYON
  • NEWSLINKER

OUR COMPANY

  • About Us
  • Cookie Policy
  • Advertising
  • Contact
COINTURK NEWSCOINTURK NEWS
Follow US
COINTURK NEWS 2026
Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Lost your password?