TGViewer
πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News @cibsecurity Β· 28.5K subscribers
Post #90679 130
πŸ–‹οΈ Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code πŸ–‹οΈ

Manifold Security has disclosed eight security flaws across seven commandline AI coding agents in which a repository's own Git configuration names a command that the agent runs on the developer's machine, four of them still unpatched at publication. The command executes as the user, outside the agent's sandbox and without an approval prompt, and exploitation requires the repository to arrive.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
More from @cibsecurity
  1. Oct 7, 2026πŸ“” MI5 Warns Over 100 Academics Helped China's Espionage Plans πŸ“” MI5 has issued a rare wa…
  2. Oct 7, 2026πŸ“” AI Threats Top Cybersecurity Preparedness Gap, PwC Finds πŸ“” PwC finds global security l…
  3. Oct 7, 2026πŸ“” CloudSyncD MacOS Backdoor Hides Behind Fake Zoom Installer πŸ“” CloudSyncD uses a fake Zo…
  4. Oct 7, 2026πŸ“” China-Linked Hackers Impersonate AI Experts to Target US Policy Insiders πŸ“” TA419 posed…
  5. Oct 7, 2026πŸ“” Critical Cisco Catalyst SD-WAN Zero-Day Under Active Exploitation πŸ“” Vulnerability in C…
  6. Oct 7, 2026πŸ“” Two Zero-Days Exploited in Attack on Dutch Institute for Vulnerability Disclosure πŸ“” Th…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook β†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 β†’