Zero-Click, Zero-Warning: The New Normal for AI Agent Attacks

Author : AptaSentry AptaSentry | Published On : 05 May 2026

Three AI security incidents. Three different products. Three different vendors. All disclosed within the same two-month window. And all sharing one defining characteristic: the victim did nothing wrong.
 

In each case, there was no phishing email opened, no malicious attachment executed, no suspicious link clicked. The user sent an email (EchoLeak / CVE-2025-32711). The user visited a website (ClawJacked / CVE-2026-25253). The user launched their browser's AI panel (Glic Jack / CVE-2026-0628). Normal actions. Actions millions of people perform every day.

For More Info Visit Our Blog : - Zero-Click, Zero-Warning: The New Normal for AI Agent Attacks