Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
IT Security NachrichtenCustomer-Losing Flock Now Offers Buyouts to Avoid Laying Off Employees(20.09.2026 um 04:34 Uhr)
IT Security DownloadsGitHub Release: openclaw/openclaw v2026.7.34 (20.09.2026)(20.09.2026 um 00:00 Uhr)
Windows Tipps & SecurityHow to connect Google Workspace to Outlook(20.09.2026 um 02:02 Uhr)
Sicherheitslücken (CVE)Your AI Agent Should Be a Guest, Not a Tenant(20.09.2026 um 03:38 Uhr)
Sichere ProgrammierungA terrible lead to an AI junior(20.09.2026 um 03:41 Uhr)
IT Security NachrichtenCustomer-Losing Flock Now Offers Buyouts to Avoid Laying Off Employees(20.09.2026 um 04:34 Uhr)
IT Security DownloadsGitHub Release: openclaw/openclaw v2026.7.34 (20.09.2026)(20.09.2026 um 00:00 Uhr)
Windows Tipps & SecurityHow to connect Google Workspace to Outlook(20.09.2026 um 02:02 Uhr)
Sicherheitslücken (CVE)Your AI Agent Should Be a Guest, Not a Tenant(20.09.2026 um 03:38 Uhr)
Sichere ProgrammierungA terrible lead to an AI junior(20.09.2026 um 03:41 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

An LLM agent attempts to compromise a project on GitHub

The AI Security Institute has released a detailed report on an security incident of its own making. The Institute set some LLM agents loose on the Internet with a security challenge; soon they were creating malware-laden pull requests and sock-puppet accounts to promote them.

The agent opened a malicious pull request (PR) to ⟨REPO_A⟩ and pursued a number of strategies to get it merged:
  1. Repeatedly commented on the PR with sockpuppet accounts to manufacture consensus and pressure the maintainer into approving with minimal review.
  2. Opened a GitHub Issue in another repository (also owned by ⟨PERSON_A⟩) containing a prompt injection for other coding agents. The malicious instructions were addressed to issue-triage AI coding agents and invisible to humans viewing the website.
  3. Sent multiple emails to ⟨PERSON_A⟩ and ⟨PERSON_B⟩, with different pretexts to get them to run malicious code. Over the course of the sample, the agent sent five emails, some containing malware, others aimed at persuading a maintainer to accept the pull request.

It would be surprising if this were the only incident of this type; the only real difference here is that the people involved are documenting what happened.

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-93987 | rclone versions 1.56.0 through 1.75.0 contain a path traversal vulnerabi…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick