← Back to glossary
Glossary

Confused Deputy Attack

Reviewed 20 March 2026 Canonical definition

A security vulnerability where an agent with legitimate access is tricked into misusing its privileges on behalf of an attacker. Common in delegation scenarios where token scoping is too broad.