Claude Code Vulnerability Could Let Attackers Steal Credentials From GitHub, Says Microsoft – Decrypt
In brief Microsoft researchers found that Anthropic’s Claude Code GitHub Action could be manipulated through prompt injection attacks. The attack relied on malicious instructions hidden in GitHub issues, pull requests, or comments that the AI agent was asked to review. Anthropic patched the vulnerability in May after Microsoft disclosed the issue through HackerOne. Microsoft researchers...
What's Your Reaction?
Like
0
Dislike
0
Love
0
Funny
0
Angry
0
Sad
0
Wow
0