The ServiceNow Now Assist AI exploit allows attackers to manipulate AI agents through second-order prompt injection, leading to unauthorized data access and privilege escalation. Default configurations enable agents to discover and collaborate, creating chain reactions that can compromise sensitive information without direct user interaction. Second-order prompt injection: Hidden instructions in data fields trick agents into