STOP GIVING PUBLICLY ACCESSIBLE AGENTS UNFETTERED ACCESS TO RANDOM SHIT
noma.security/blog/gitlost...
STOP GIVING PUBLICLY ACCESSIBLE AGENTS UNFETTERED ACCESS TO RANDOM SHIT
noma.security/blog/gitlost...
https://gigazine.net/news/20260709-gitlost/
https://gigazine.net/news/20260709-gitlost/
New AI Security Threats: HalluSquatting, Ghost Approval, and GitLost Explained
Security Now details how these innovative attack techniques are exploiting AI agents and why developers and users must take action.
New AI Security Threats: HalluSquatting, Ghost Approval, and GitLost Explained
Security Now details how these innovative attack techniques are exploiting AI agents and why developers and users must take action.
Security Now: HalluSquatting, GhostApproval & GitLost
Patch Tuesday Breaks Records
with Steve Gibson, @leolaporte.me
Security Now: HalluSquatting, GhostApproval & GitLost
Patch Tuesday Breaks Records
with Steve Gibson, @leolaporte.me
If a coding model hallucinates a repo, package, or URL…
An attacker can create it.
That is HalluSquatting.
Security Now also gets into GitLost, GhostApproval, and private code leak risks.
If a coding model hallucinates a repo, package, or URL…
An attacker can create it.
That is HalluSquatting.
Security Now also gets into GitLost, GhostApproval, and private code leak risks.
cybersecuritynews.com/gitlost-vuln...
#Cybersecurity #ThreatIntel #Vulnerability
cybersecuritynews.com/gitlost-vuln...
#Cybersecurity #ThreatIntel #Vulnerability
ברכותי, בגלל שהכל מטומטם ובמיוחד genAI, אתם חשופים למתקפה.
בהנתן שהתוקף יבקש יפה, כמובן.
noma.security/blog/gitlost...
ברכותי, בגלל שהכל מטומטם ובמיוחד genAI, אתם חשופים למתקפה.
בהנתן שהתוקף יבקש יפה, כמובן.
noma.security/blog/gitlost...
A look at GitLost, the GitHub Agentic Workflows prompt-injection case where public issue text, private repo access, and public comments collide.
#AI #GitLost #GitHub #GitHubActions #PromptInjection #AIAgents #AgenticAI #AISecurity #GitHubCopilot #Cybersecurity
A look at GitLost, the GitHub Agentic Workflows prompt-injection case where public issue text, private repo access, and public comments collide.
#AI #GitLost #GitHub #GitHubActions #PromptInjection #AIAgents #AgenticAI #AISecurity #GitHubCopilot #Cybersecurity
Listen to this news: hackread.com/gitlost-gith...
#GitHub #GitHubActions #AI #Cybersecurity #Vulnerability
Listen to this news: hackread.com/gitlost-gith...
#GitHub #GitHubActions #AI #Cybersecurity #Vulnerability
You cannot have the same instance of an agent accessing things in two different security boundaries.
In the worst case here you may need a completely separate instance of the agent for every private repo an org has.
noma.security/blog/gitlost...
You cannot have the same instance of an agent accessing things in two different security boundaries.
In the worst case here you may need a completely separate instance of the agent for every private repo an org has.
noma.security/blog/gitlost...
lol, lmao
lol, lmao
the one word that slipped it past the guardrails: 'additionally' https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/
the one word that slipped it past the guardrails: 'additionally' https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/
Just ask the GitHub AI Agent... but nicely 😇
www.theregister.com/security/202...
Just ask the GitHub AI Agent... but nicely 😇
www.theregister.com/security/202...
#security #github #gitlost
#security #github #gitlost