HR receives 10 resume PDFs from job candidates and drops them into a folder on her work laptop.
She opens an AI coding agent and types: "Analyze these 10 resumes and pick the best 2 candidates."
One of the PDFs contains hidden white text invisible to the human eye, but readable by AI:
The AI agent reads the hidden instruction and executes it as a command. It has full access to the filesystem because it's running with full permissions on your machine.
Company passwords, API keys, SSH keys, and browser credentials are uploaded to the attacker's server. HR has no idea. The resume analysis looks completely normal.