# This 'ZombieAgent' zero click vulnerability allows for silent account takeover - here's what we know

> OpenAI’s new “apps” feature enables ChatGPT to connect with external services like email and storage Radware discovered “ZombieAgent,” a prompt injection flaw allowing hidden commands to exfiltrate or propagate data…

- **Source:** [TechRadar](https://www.techradar.com/pro/security/this-zombieagent-zero-click-vulnerability-allows-for-silent-account-takeover-heres-what-we-know?utm_source=gearopen.com&utm_medium=referral&utm_campaign=feed&utm_content=6960f60ff52b2e78369ba214)
- **Published:** 2026-01-09
- **Category:** AI & Bots
- **Tags:** #chatgpt #openai #click #feature #allows #zero #zombieagent #account
- **Canonical:** http://localhost:4321/a/6960f60ff52b2e78369ba214

---

_GearOpen's distilled summary. The full original article is published at TechRadar (source link above); GearOpen does not republish the source's full text._
