OpenHands and the Lethal Trifecta: How Prompt Injection Can Leak Access Tokens | AI Sec Watch