> We're entering an era where AI agents attack other AI agents.
-
RE: https://mastodon.social/@campuscodi/116154291574332497
> We're entering an era where AI agents attack other AI agents. In this campaign, an AI-powered bot tried to manipulate an AI code reviewer into committing malicious code. The attack surface for software supply chains just got a lot wider.
-
RE: https://mastodon.social/@campuscodi/116154291574332497
> We're entering an era where AI agents attack other AI agents. In this campaign, an AI-powered bot tried to manipulate an AI code reviewer into committing malicious code. The attack surface for software supply chains just got a lot wider.
Several interesting attacks in this one. What's curious is that each malicious PR discussed used a different attack.
A lot of them are injection attacks. But my favorite of all of them: rewrote CLAUDE.md so the reviewing agent took on different directives. That attack kinda rules ngl