home.social

#cursoragent — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cursoragent, aggregated by home.social.

  1. "a single attack pattern lets a malicious repository achieve remote code execution through AI coding assistants. The agent is tricked into a benign-looking file copy that secretly overwrites its own config, and the next restart runs attacker code with full user privileges.

    We confirmed the technique against #Claude Code, #Gemini CLI/Antigravity CLI, #CursorAgent CLI, GitHub #Copilot CLI, #Grok Build, and #OpenAI Codex CLI"

    Ooops.

    #GenAI

    h/t @campuscodi

    adversa.ai/blog/the-approval-p