A Booby-Trapped Git Repository Can Quietly Leak Files Through Claude Code, Researchers Show
Security firm Tego AI says an ordinary-looking repository file can trick Anthropic’s Claude Code into reading a file from outside the project and silently including it in its first request to the model, no code execution or user approval prompt required. Anthropic has classified the report as informative rather than a bug.
Itagora tiene in archivio titolo e sommario per la ricerca interna. Il testo completo resta sulla fonte. Il link in uscita non invia referrer.