← Back to glossary Glossary

Exfiltration via Agent

Reviewed 19 July 2026 Canonical definition Part of: MCP & Agent Protocol Terms →

Exfiltration via agent is the use of a compromised or manipulated AI agent as a data exfiltration channel, leveraging the agent's legitimate access to sensitive systems to extract and transmit data to an attacker-controlled destination. Agents are attractive exfiltration vectors because their tool calls and outbound API requests may not be subject to the same monitoring as human-initiated transfers.

§01 / QUESTIONSterm: Exfiltration via Agent
Questions

Common questions.

What is Exfiltration via Agent?

Exfiltration via agent is the use of a compromised or manipulated AI agent as a data exfiltration channel, leveraging the agent's legitimate access to sensitive systems to extract and transmit data to an attacker-controlled destination.

How is Exfiltration via Agent used in production?

Agents are attractive exfiltration vectors because their tool calls and outbound API requests may not be subject to the same monitoring as human-initiated transfers.

Which terms are related to Exfiltration via Agent?

Closely related concepts include MCP (Model Context Protocol), Agent Ecosystem, AI Agent, MCP Sampling. Each is defined in the Prefactor glossary.

§02 / RELATEDnext: where this fits
Keep reading

Where this fits.

See how every agent performs, and make it better

Prefactor helps teams observe, evaluate, and improve their AI agents in production, across every framework and provider.