GitHub AI Agent Flaw: One Sentence in an Issue Can Steal Private Data
Noma Security discovered a prompt injection vulnerability called GitLost that exploits GitHub's new Agentic Workflows to leak private data. Attackers embed hidden instructions in public GitHub Issues, bypassing security measures and inducing the AI agent to disclose confidential information in public comments.
GitHub
Noma Security
InfoQ 中国31.07 · 08:01
