Tenet Security's 'Agentjacking' attack turns a fake Sentry error into code running on developer machines. It hijacked Claude Code, Cursor & Codex.
Microsoft's June 2026 VS Code update turns on Autopilot by default and adds background sending for agent sessions.