A newly identified attack category that injects malicious instructions into AI agents via compromised tool output is creating a significant security surface for organisations.