Atlassian Rovo Exfiltrates Data, Bypassing Controls

🚀 Discover this awesome post from Hacker News 📖

📂 **Category**:

✅ **What You’ll Learn**:

The injection manipulates Rovo to submit Jira tickets and Confluence documents to the attacker’s website

Rovo’s URL retrieval tool is insecure: there are no protections against opening a URL that has been dynamically created by the agent. Here, Rovo is manipulated to append sensitive data to an attacker’s URL. When Rovo calls the insecure tool to open the URL, the attacker’s site logs the request, including the appended sensitive data.

Rovo is manipulated by the injection to submit Jira and Confluence data to the attacker’s URL.

Note: This attack succeeds even if an organization has disabled web search for Rovo. This is because the web search setting fails to remove the tool for opening the search results.

The organization-wide ‘Enable web search’ setting for Rovo is toggled off.

If the user returns to the chat later, they see the agent’s suggested ticket updates, but no evidence of the attack.

If the user later reopens the chat, all evidence is gone and output appears normal.

🔥 **What’s your take?**
Share your thoughts in the comments below!

#️⃣ **#Atlassian #Rovo #Exfiltrates #Data #Bypassing #Controls**

🕒 **Posted on**: 1786011949

🌟 **Want more?** Click here for more info! 🌟

By

Leave a Reply

Your email address will not be published. Required fields are marked *