Attackers can turn AI agent guardrails into denial-of-service weapons