今日已更新 240 条资讯 | 累计 23823 条内容
关于我们

Indirect Prompt Injection Exploits GitHub's AI Agent to Leak Private Repository Data

Sergio De Simone 2026年07月24日 04:00 0 次阅读 来源:InfoQ

GitLost is a prompt-injection exploit discovered by Noma Security that tricks GitHub's new Agentic Workflows into leaking private data. By embedding concealed instructions within public GitHub issues, attackers can circumvent security safeguards and induce AI agents to reveal confidential information in public comments. By Sergio De Simone

本文内容来源于互联网,版权归原作者所有
查看原文