Topic · 25 stories
AI coding agents security: attacks and flaws, news
This edition was produced with artificial intelligence. Text and voice are generated automatically.
Timeline
- Remote code execution flaw found in OpenCode AI coding agent Security
- Plugin4Shell flaw let a git branch trick bypass safety locks on four AI coding agents AI
- Plugin4Shell zero-click flaw hits Claude Code, Codex, Gemini CLI and Copilot AI
- PhantomFix Flaw Hijacks Sentry Seer Autofix Agent Security
- Claude Code vulnerability allows code execution via malicious pull requests Security
- New ‘hallusquatting’ attack exploits AI coding assistants to install malware AI
- Four AI Coding Tools Hit by Sandbox Escapes via Prompt Injection AI
- HalluSquatting AI attack could hijack your computer AI
- GhostApproval Attack Tricks AI Coding Tools into Writing SSH Keys AI
- Ghostcommit Hides Prompt Injection in PNG Images to Steal Repository Secrets AI
Show older (15 stories)
- HalluSquatting Exploits AI Hallucinations to Build Agentic Botnets Security
- GhostApproval Tricks Six AI Coding Tools Into Writing SSH Keys via Symlinks Security
- Friendly Fire Attack Manipulates Claude Code and Codex Into Running Malicious Code Security
- Ghostcommit Steals Repository Secrets by Hiding Prompt Injection in PNG Images Security
- Researchers Warn AI Agents Can Be Turned Into Botnets via Hallucination Exploit AI
- GitLost Vulnerability Lets Attackers Leak Private Repos via GitHub AI Agent AI
- GitHub AI Agent Tricked into Leaking Private Repositories via Prompt Injection Security
- Mozilla Researchers Show Claude Code Can Be Tricked into Reverse Shell via DNS AI
- Critical Amazon Q Extension Vulnerability Allows Code Execution via Malicious Repo Security
- Claude Code Can Be Tricked Into Reverse Shell via DNS Text Record Security
- AI Coding Agents Bypass Package Verification, Fueling Supply Chain Attacks AI
- Claude Code Repo Attack Delivers Reverse Shell via DNS TXT Record Security
- 15 Malicious JetBrains Plugins Stole AI API Keys from 70,000 Developers Security
- Microsoft GitHub Repositories Compromised with Credential-Stealing Malware Security
- Microsoft Repos Used to Deliver Malware via AI Coding Tools Security