Four teams just broke AI agents four ways in ten days. The flaw is the same one.
We spent two years asking whether AI would lie to us. The more useful question this summer is what happens once we hand it the keys. Give a model your Gmail, your calendar, a memory and the power to act, and its mistakes stop being embarrassing. They start being exploitable.
Over roughly ten days in July, four pieces of research landed that make the same point from four angles. None is a lone bug. Together they sketch the shape of AI agent security in 2026, and the picture is not reassuring.
The browser assistant that clicks for you
Start with the tool sitting closest to your data. Security firm Manifold Security published research showing that any browser extension you install can quietly hijack Anthropic’s Claude for Chrome and make it read your Gmail, Google Docs and Calendar.
The trick is small. The extension listens for a user click before it...
Copyright of this story solely belongs to thenextweb.com. To see the full text click HERE