arxiv
PublishedSeptember 11, 2026 at 4:00 AM
—neutral
AgentHijack: Visual Patch Attacks on Multimodal Computer-Use Agents
Publisher summary· verbatim
arXiv:2609.09212v1 Announce Type: cross Abstract: This paper presents an end-to-end evaluation framework for image-triggered command injection against computer-use agents (CUAs). The goal is to test whether a local visual patch can induce verifiable environmental consequences along the full chain of
Stay posted· Newsletter
A 5-min weekly brief — top movers, price watch, story of the week.
Discussion
No replies yet. Be first.
Related coverage
More from ARXIV
arxivBringing Value Models Back: Generative Critics for Value Modeling in LLM Reinforcement Learning7harxivSubagents vs Agent Skills: Executing Reusable Knowledge for Long-Horizon Agentic Tasks7harxivDistribution-Consistent Inference for Dynamic Sparse Mixture-of-Experts7harxivIn RAG We Trust? Measuring Robustness of Retrieval-Augmented Generation Under Document Poisoning7hThe Bubble Brief
WEEKLYRead AI insights every Tuesday — top movers, new releases, story of the week.
Originally published on arxiv ↗