A security firm says hidden text inside PDFs can hijack Atlassian’s AI assistant, causing it to quietly send Jira tickets and Confluence documents to an attacker. According to the report, the instructions can be buried in a file that appears empty to the person opening it.
The development matters because Jira and Confluence are widely used to manage company projects, internal documentation, and sensitive operational work. If an AI assistant follows concealed instructions inside a document, the risk is not just a bad response, but potential exposure of business data that users did not intend to share.
The reported technique is a form of prompt injection, where malicious instructions are placed in content that an AI system reads. In this case, the concern is that the AI assistant treats hidden PDF text as instructions rather than as untrusted material.
For crypto companies, the issue fits a broader security concern around AI tools connected to internal systems. Exchanges, infrastructure firms, wallets, and media teams often rely on documentation and ticketing workflows, making data leakage through productivity tools a serious operational risk.
The report does not establish market impact or claim losses. It highlights a practical security problem for organizations adopting AI assistants: files that look harmless to humans may still contain instructions that software can read and act on.