A security researcher found a flaw in Anthropic’s Claude Code GitHub Action that let an attacker take over vulnerable public repositories running it, with nothing more than a single opened GitHub issue. Because Anthropic’s own action repo used the same…
The post Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories appeared first on IT Security News.