Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents
The Hacker News
3 weeks ago

Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents

By info@thehackernews.com (The Hacker News)

A single invisible comment in an Azure DevOps pull request can turn a reviewer's own AI coding agent against them, driving it into projects the attacker has no rights to reach and quietly leaking what it finds. The flaw is in Microsoft's official Azure DevOps MCP server, and it works because one of its tools returns pull request descriptions without a prompt-injection guardrail the company had

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.