Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

Read full story on The Hacker News
Share
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
AI disclosure

Summary

A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run. Novee Security ran the attack against each vendor's agent in the configuration that the vendor ships by default, and presented the work at Black Hat USA on August 5.

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.