Agentic AI memory attacks spread across sessions and users, and most organizations aren’t ready

2026-04-14T08:51:57Z4b2aeb1b5dcb907e229d31dd65c6408829f4a2922595290d3b20357ad0f8c782
AI agentsAI memoryAnodotCPUIDClaude CodeGitGuardianGoogle Pixel 10MemoryTrapRockstar GamesRustSTX RATSiemensSnowflakeagentic AIauth tokensbaseband securitycredential leakagedata breachidentity securityindustrial edge AImalwarememory poisoningsecrets managementsupply chain compromisezero trust

What happened

This feed highlights multiple high-risk trends and incidents: researcher Idan Habler disclosed “MemoryTrap,” a memory-poisoning technique that compromised Claude Code’s long-term memory and demonstrated how a single poisoned memory object can propagate across sessions, users, and subagents—underscoring that AI memory should be governed like secrets and identities. Related telemetry shows massive credential sprawl: GitGuardian reported ~28.7M new secrets exposed in public GitHub commits in 2025, amplifying risk for AI agents that rely on many credentials. Active incidents include a CPUID site-s

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
4b2aeb1b5dcb907e229d31dd65c6408829f4a2922595290d3b20357ad0f8c782
Enrichment time
2026-04-14T08:51:57Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.