← Back to glossary Glossary

Agent Hijacking

Reviewed 19 July 2026 Canonical definition Part of: Agent Identity & Access Terms →

Agent hijacking is the takeover of an active AI agent session by an attacker, allowing them to redirect the agent's actions, extract its credentials, or use it as a proxy to access protected systems. It can occur through session token theft, MCP transport interception, or exploitation of insufficient authentication in the agent's control interface.

§01 / QUESTIONSterm: Agent Hijacking
Questions

Common questions.

What is Agent Hijacking?

Agent hijacking is the takeover of an active AI agent session by an attacker, allowing them to redirect the agent's actions, extract its credentials, or use it as a proxy to access protected systems.

How does Agent Hijacking work?

It can occur through session token theft, MCP transport interception, or exploitation of insufficient authentication in the agent's control interface.

Which terms are related to Agent Hijacking?

Closely related concepts include Agent Retirement, Access Token, Agent Card, Agent Passport. Each is defined in the Prefactor glossary.

§02 / RELATEDnext: where this fits
Keep reading

Where this fits.

See how every agent performs, and make it better

Prefactor helps teams observe, evaluate, and improve their AI agents in production, across every framework and provider.