Agent-in-the-Middle via A2A Protocol (Apr 2025) โ A fake agent card in an open directory fooled an orchestrator into routing sensitive coordination traffic through an attacker-controlled agent, which intercepted and leaked the data.
Source: Trustwave SpiderLabs, Apr 2025Sensitive Info Disclosure ยท Excessive Agency