With Anthropic announcing auto-mode as the new default setting, and AI labs touting defensive AI as the only solution to their irresponsible security practices, a reminder of our exploit demonstrating how defensive AI agents using auto-mode can be easily compromised towards RCE.