1 min readfrom InfoQ

Indirect Prompt Injection Exploits GitHub's AI Agent to Leak Private Repository Data

Indirect Prompt Injection Exploits GitHub's AI Agent to Leak Private Repository Data

GitLost is a prompt-injection exploit discovered by Noma Security that tricks GitHub's new Agentic Workflows into leaking private data. By embedding concealed instructions within public GitHub issues, attackers can circumvent security safeguards and induce AI agents to reveal confidential information in public comments.

By Sergio De Simone

Want to read more?

Check out the full article on the original site

View original article
Indirect Prompt Injection Exploits GitHub's AI Agent to Leak Private Repository Data