Opening SecureFlowLiving Off AI: Prompt Injection via Jira Service Management
Case summary & sources

AIDEFEND SecureFlow / SecureFlow Case Index

MITRE ATLAS mitre-atlas-cs0039

Living Off AI: Prompt Injection via Jira Service Management

  • Autonomous Agents
  • Tool Integrations & MCP
  • Data Exfiltration

Researchers from Cato Networks demonstrated how adversaries can exploit AI-powered systems embedded in enterprise workflows to execute malicious actions with elevated privileges. This is achieved by crafting malicious inputs from external users such as support tickets that are later processed by internal users or automated systems using AI agents. These AI agents, operating with internal context and trust, may interpret and execute the malicious instructions, leading to unauthorized actions such as data exfiltration, privilege escalation, or system manipulation.

Mapped threat techniques

Source

Updated