Cinthia (@cinthiap) 's Twitter Profile
Cinthia

@cinthiap

ID: 15590253

calendar_today24-07-2008 22:42:11

1,1K Tweet

198 Followers

649 Following

mbg (@mbrg0) 's Twitter Profile Photo

we got a persistent 0click on ChatGPT by sharing a doc that allowed us to exfiltrate sensitive data and creds from your connectors (google drive, sharepoint, ..) + chat history + future conversations it gets worse. we deploy a memory implant #DEFCON #BHUSA Tamir Ishay Sharbat

Allie Howe (@vtahowe) 's Twitter Profile Photo

Great example of how an indirect prompt injection stored in a google doc allows an attacker to extract API keys from google drive If you’re connecting agents to sensitive data sources make sure you have some runtime security at play

Ynetnews (@ynetnews) 's Twitter Profile Photo

Israeli cybersecurity firm Zenity demonstrates a 'zero-click' hack at Black Hat 2025, exposing critical vulnerabilities in ChatGPT and other AI platforms that allow full account takeover via Google ynetnews.com/business/artic…

mbg (@mbrg0) 's Twitter Profile Photo

we hijacked microsoft's copilot studio agents and got them to spill out their private knowledge, reveal their tools and let us use them to dump full crm records these are autonomous agents.. no human in the loop #DEFCON #BHUSA Tamir Ishay Sharbat

we hijacked microsoft's copilot studio agents and got them to spill out their private knowledge, reveal their tools and let us use them to dump full crm records

these are autonomous agents.. no human in the loop

#DEFCON #BHUSA <a href="/tamirishaysh/">Tamir Ishay Sharbat</a>
mbg (@mbrg0) 's Twitter Profile Photo

time to drop powerpwn v4! 😈🤖 scan the internet for public-facing microsoft copilot studio ai agents extract their internal instructions and knowledge sources discover and invoke their tools point it at your tenant.. and go hack yourself! #DEFCON #BHUSA Assembly Man

Zenity (@zenitysec) 's Twitter Profile Photo

Michael's latest research is sparking important discussions across the community on how attackers can silently hijack enterprise AI agents -- and how to stop them.

Cinthia (@cinthiap) 's Twitter Profile Photo

Did you catch Zenity Labs at #BlackHat last week? Zero click agent takeovers and data extraction, shown live. Covered in FORTUNE. Thank you Sharon Goldman! fortune.com/2025/08/12/hac…

Cinthia (@cinthiap) 's Twitter Profile Photo

Your AI agent could leak sensitive data without you knowing. 🤯 Tamir Ishay Sharbat from Zenity Labs explains how a malicious doc in Google Drive can trigger zero click data exfil through ChatGPT Connectors. No clicks. No prompts. Full access. Stay in control of your agents.

Cinthia (@cinthiap) 's Twitter Profile Photo

Thrilled to see #AgentFlayer in WIRED, FORTUNE, PCMag, Dark Reading, The Hacker News and so many others… And now, two dogs podcasting about Zenity Labs research. 🤣 🎙🐕 youtube.com/watch?v=FhxyWT…

Cinthia (@cinthiap) 's Twitter Profile Photo

AI Agent Security Summit in NYC was fantastic. Now Zenity Labs is bringing it to SF this October. We’ve had a strong wave of talk proposals on AI agent security, but do we have yours? Apply to speak here: zenity.io/resources/even…

AI Agent Security Summit in NYC was fantastic. Now <a href="/zenitysec/">Zenity</a> Labs is bringing it to SF this October.

We’ve had a strong wave of talk proposals on AI agent security, but do we have yours?

Apply to speak here: zenity.io/resources/even…
Cinthia (@cinthiap) 's Twitter Profile Photo

The League is assembling. 100+ talk proposals shaped the AI Agent Security Summit. Presented by Zenity Labs, join us for a full day of multi-track keynotes, lightning talks, panels and more + exclusive swag! 🎁 📅Oct 8 📍San Francisco zenity.io/resources/even…

The League is assembling. 100+ talk proposals shaped the AI Agent Security Summit. Presented by <a href="/zenitysec/">Zenity</a> Labs, join us for a full day of multi-track keynotes, lightning talks, panels and more + exclusive swag! 🎁 
📅Oct 8 
📍San Francisco
zenity.io/resources/even…
Zenity (@zenitysec) 's Twitter Profile Photo

The League is assembling. 👥 Oct 8 in SF → AI Agent Security Summit. 🤖 100+ talks. 1 full day. Multiple tracks. Community-driven, research-first. 🔐 🔗 zenity.io/resources/even… #AIAgentSecurity #AgenticSecurity