← Back to glossary
Glossary

Exfiltration via Agent

Reviewed 9 April 2026 Canonical definition

Exfiltration via agent is the use of a compromised or manipulated AI agent as a data exfiltration channel — leveraging the agent's legitimate access to sensitive systems to extract and transmit data to an attacker-controlled destination. Agents are attractive exfiltration vectors because their tool calls and outbound API requests may not be subject to the same monitoring as human-initiated transfers.