News Score: Score the News, Sort the News, Rewrite the Headlines

New Vulnerability in GitHub Copilot and Cursor: How Hackers Can Weaponize Code Agents

‍Executive SummaryPillar Security researchers have uncovered a dangerous new supply chain attack vector we've named "Rules File Backdoor." This technique enables hackers to silently compromise AI-generated code by injecting hidden malicious instructions into seemingly innocent configuration files used by Cursor and GitHub Copilot—the world's leading AI-powered code editors.‍By exploiting hidden unicode characters and sophisticated evasion techniques in the model facing instruction payload, threa...

Read more at pillar.security

© News Score  score the news, sort the news, rewrite the headlines