Agentic ProbLLMs - Exploiting AI Computer-Use and Coding Agents
Hack In The Box Security Conference via YouTube
PowerBI Data Analyst - Create visualizations and dashboards from scratch
Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Overview
AI, Data Science & Cloud Certificates from Google, IBM & Meta — 40% Off
One plan covers every Professional Certificate on Coursera. 40% off Coursera Plus Annual.
Unlock All Certificates
Explore critical security vulnerabilities in AI-powered autonomous systems through this comprehensive conference talk that demonstrates real-world prompt injection attacks targeting computer-use and coding agents. Witness live exploits against popular agentic systems including OpenAI's Operator, Google Jules, Gemini CLI, Anthropic's Claude Code, and Cognition's Devin, with the presenter investing $500 to successfully hijack and exploit Devin for educational purposes. Discover the disastrous consequences of autonomous agent operations, including remote code execution (RCE), sensitive data exfiltration such as access tokens, and the creation of "ZombAIs" - AI agents integrated into traditional command and control infrastructure. Learn how nation-state tactics like ClickFix can be adapted to compromise AI computer-use systems, leading to full system compromise through "AI ClickFix" techniques. Examine complex attack chains that combine multiple novel exploitation methods, gain insights into the security posture of various coding agents, and understand how long-term prompt injection persistence can be achieved with AI agents. The presentation concludes with current mitigation strategies and forward-looking recommendations for securing AI-driven automation systems, delivered by Johann Rehberger, a seasoned security professional with over twenty years of experience in threat modeling, red teaming, and penetration testing across major technology companies.
Syllabus
#OOTB2025BKK Agentic ProbLLMs: Exploiting Al Computer-Use And Coding Agents - Johann Rehberger
Taught by
Hack In The Box Security Conference