heise · Ticker

AI

AI agents automatically execute git malicious code at startup

The security firm Manifold has discovered a potential attack vector involving tampered Git repositories. These repositories contain commands in their configuration that are automatically executed by AI agents in the terminal—with the developer’s full privileges, outside the sandbox, without requiring authentication, and without a prior trust prompt. Developers become victims the moment they open such a repository.