Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks
The Hacker News
1 month ago

GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks

By info@thehackernews.com (The Hacker News)

The safety check that is supposed to stop an AI coding agent from running a dangerous command can be walked straight past using a shell trick that has been public for decades. New research from Adversa AI, which is named the bypass GuardFall, found it works against ten of the eleven popular open-source coding and computer-use agents the firm tested. Only one, "Continue," was built to

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.