GitLost: How We Tricked GitHub’s AI Agent into Leaking Private Repos
Submitted 2 weeks ago by cm0002@libretechni.ca to cybersecurity@infosec.pub
https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/
Submitted 2 weeks ago by cm0002@libretechni.ca to cybersecurity@infosec.pub
https://noma.security/blog/gitlost-how-we-tricked-githubs-ai-agent-into-leaking-private-repos/
JRaccoon@discuss.tchncs.de 2 weeks ago
I think the whole thing is a bit clickbaity. The only reason it works is that they specifically configured the AI workflow to have access to both the public and the private repositories. The solution? Don’t do that. The only thing GitHub could fix here is disallowing such an obviously unsafe configuration.