CybersecurityDev6 min reading time

Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code

The Hacker News
Read full post
Manifold Security revealed eight security vulnerabilities in seven AI coding agents where malicious .git configurations can execute attacker code on users' machines without prompts. Some agents like goose, Claude Code, and Cursor have patched the flaws, while others remain vulnerable. OpenAI also reported related CVEs for Codex, highlighting risks in subprocess commands triggered by Git settings.

More in Cybersecurity

Cybersecurity10 min read

Anthropic Details Disrupted Claude Misuse Across Seven Harm Areas

Covered by 4 sources
Cybersecurity4 min read

Sam Altman met with top power utilities about securing the electrical grid. He offered one possible solution: OpenAI's cyber services.

Covered by 2 sources
Cybersecurity6 min read

Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

TechCrunch