Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. These AI agent attacks are getting ridiculous

These AI agent attacks are getting ridiculous

Scheduled Pinned Locked Moved Uncategorized
7 Posts 6 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • campuscodi@mastodon.socialC This user is from outside of this forum
    campuscodi@mastodon.socialC This user is from outside of this forum
    campuscodi@mastodon.social
    wrote last edited by
    #1

    These AI agent attacks are getting ridiculous

    Malicious code hidden in source code repositories can trick AI coding agents into overwriting their own configuration files

    Link Preview Image
    The approval prompt is lying: a critical coding agent security flaw

    A critical coding agent security flaw, SynJack, lets a fake "video copy" rewrite config in Claude, Cursor, Copilot, Codex, Grok, and Gemini. How to stop RCE.

    favicon

    Adversa AI | Agentic AI Security (adversa.ai)

    dalias@hachyderm.ioD claralistensprechen3rd@friendica.myportal.socialC cjust@infosec.exchangeC 3 Replies Last reply
    2
    0
    • campuscodi@mastodon.socialC campuscodi@mastodon.social

      These AI agent attacks are getting ridiculous

      Malicious code hidden in source code repositories can trick AI coding agents into overwriting their own configuration files

      Link Preview Image
      The approval prompt is lying: a critical coding agent security flaw

      A critical coding agent security flaw, SynJack, lets a fake "video copy" rewrite config in Claude, Cursor, Copilot, Codex, Grok, and Gemini. How to stop RCE.

      favicon

      Adversa AI | Agentic AI Security (adversa.ai)

      dalias@hachyderm.ioD This user is from outside of this forum
      dalias@hachyderm.ioD This user is from outside of this forum
      dalias@hachyderm.io
      wrote last edited by
      #2

      @campuscodi I don't call that malicious code I call that self-defense.

      lanodan@queer.hacktivis.meL cwbussard@ioc.exchangeC 2 Replies Last reply
      0
      • dalias@hachyderm.ioD dalias@hachyderm.io

        @campuscodi I don't call that malicious code I call that self-defense.

        lanodan@queer.hacktivis.meL This user is from outside of this forum
        lanodan@queer.hacktivis.meL This user is from outside of this forum
        lanodan@queer.hacktivis.me
        wrote last edited by
        #3
        @dalias @campuscodi plus well… it's not code
        1 Reply Last reply
        0
        • dalias@hachyderm.ioD dalias@hachyderm.io

          @campuscodi I don't call that malicious code I call that self-defense.

          cwbussard@ioc.exchangeC This user is from outside of this forum
          cwbussard@ioc.exchangeC This user is from outside of this forum
          cwbussard@ioc.exchange
          wrote last edited by
          #4

          @dalias @campuscodi

          Yes... I think there'd be an audience for a plug-and-play version that you could just drop into any repo that would prevent AI slop pull requests by tricking the AI slop tools into nuking the local copy.

          dalias@hachyderm.ioD 1 Reply Last reply
          0
          • cwbussard@ioc.exchangeC cwbussard@ioc.exchange

            @dalias @campuscodi

            Yes... I think there'd be an audience for a plug-and-play version that you could just drop into any repo that would prevent AI slop pull requests by tricking the AI slop tools into nuking the local copy.

            dalias@hachyderm.ioD This user is from outside of this forum
            dalias@hachyderm.ioD This user is from outside of this forum
            dalias@hachyderm.io
            wrote last edited by
            #5

            @cwbussard @campuscodi Or putting a blackhole for the slop provider's domain name in /etc/hosts so the whole thing stops working. 😈

            1 Reply Last reply
            0
            • R relay@relay.publicsquare.global shared this topic
            • campuscodi@mastodon.socialC campuscodi@mastodon.social

              These AI agent attacks are getting ridiculous

              Malicious code hidden in source code repositories can trick AI coding agents into overwriting their own configuration files

              Link Preview Image
              The approval prompt is lying: a critical coding agent security flaw

              A critical coding agent security flaw, SynJack, lets a fake "video copy" rewrite config in Claude, Cursor, Copilot, Codex, Grok, and Gemini. How to stop RCE.

              favicon

              Adversa AI | Agentic AI Security (adversa.ai)

              claralistensprechen3rd@friendica.myportal.socialC This user is from outside of this forum
              claralistensprechen3rd@friendica.myportal.socialC This user is from outside of this forum
              claralistensprechen3rd@friendica.myportal.social
              wrote last edited by
              #6
              @campuscodi Karma!
              1 Reply Last reply
              0
              • R relay@relay.an.exchange shared this topic
              • campuscodi@mastodon.socialC campuscodi@mastodon.social

                These AI agent attacks are getting ridiculous

                Malicious code hidden in source code repositories can trick AI coding agents into overwriting their own configuration files

                Link Preview Image
                The approval prompt is lying: a critical coding agent security flaw

                A critical coding agent security flaw, SynJack, lets a fake "video copy" rewrite config in Claude, Cursor, Copilot, Codex, Grok, and Gemini. How to stop RCE.

                favicon

                Adversa AI | Agentic AI Security (adversa.ai)

                cjust@infosec.exchangeC This user is from outside of this forum
                cjust@infosec.exchangeC This user is from outside of this forum
                cjust@infosec.exchange
                wrote last edited by
                #7

                @campuscodi

                Link Preview Image
                1 Reply Last reply
                1
                0
                • R relay@relay.infosec.exchange shared this topic
                Reply
                • Reply as topic
                Log in to reply
                • Oldest to Newest
                • Newest to Oldest
                • Most Votes


                • Login

                • Login or register to search.
                • First post
                  Last post
                0
                • Categories
                • Recent
                • Tags
                • Popular
                • World
                • Users
                • Groups