AgentHopper: a cross-agent 'AI virus' built on chained prompt injection

wunderwuzzi23 · x · 2026-10-06

Security researcher wunderwuzzi demonstrated AgentHopper, a prompt injection payload that hops across multiple AI agents, exploiting each conditionally — effectively an 'AI virus'. It chained arbitrary code execution vulnerabilities in agents like GitHub Copilot, Amazon Q and AWS Kiro (all patched via responsible disclosure). Real-world attackers exploiting coding agents have since been observed. The post includes mitigation guidance for vendors.

Original post →

More from coding & agent

coding & agent channel →