RedditPleaseFix: Zero-Click Agent Hijacking via Calendar Invites in Perplexity CometWweb·medium signalXBlueskyLinkedInCopy linkZenity Labs disclosed PleaseFix vulnerability family in agentic browsers. Two exploit paths: zero-click file exfiltration via calendar invites and 1Password vault takeover. Prompt injection via Reddit comments demonstrated. Perplexity patched pre-disclosure. Most alarming agentic security disclosure yet.↳ Follow the threadPolicy dependency / Stack layerMoadim Ships an MIT-Licensed Scheduler That Runs Coding Agents on a Cron Instead of a PromptMoadim, via Hacker News Show HNPolicy dependency / Stack layercloudflare/vibesdk has 1,253 forks against 5,346 stars, a 4.3:1 ratio that marks it as a template rather than a dependencyGitHubStack layer / Threat patternAstra's prompt-injection attack success rate is 8.5% against 27.0% for GPT-5.6 Sol on Gray Swan's IPI ArenaOpenAI Deployment Safety HubPolicy dependency / Stack layerRadia Gives Agents Fenced Leases and Splits Authority Lineage From Data LineageRadia (github.com/wistrand/radia), via Hacker News Show HNStack layer / Threat patternNine advisories land on CodeWhale in one day, including a critical SSRF bypass that beats DNS pinning via a TOCTOU on resolution failureGitHub Security AdvisoriesStack layer / Threat patternAlcaTRAz Defends Jailbreaks With Character-Level Perturbation Rules and No Model Access, Beating Llama Guard on 73.4% of CombinationsarXiv 2609.03693Stack layer / Threat patternAn Upstream Agent's Wrong Claim Captures 54.2% of Answers When It Arrives FirstarXiv 2609.03425Stack layer / Threat patternAn MCP Security Auditor Went Up on Apify at $0.25 Per Server, Scanning Five CWE Classes Without Executing CodeApify, via Hacker News Show HN