Crypto

Claude Code Vulnerability Could Let Attackers Steal Credentials From GitHub, Says Microsoft

Decrypt logo

In brief

  • Microsoft researchers found that Anthropic’s Claude Code GitHub Action could be manipulated through prompt injection attacks.
  • The attack relied on malicious instructions hidden in GitHub issues, pull requests, or comments that the AI agent was asked to review.
  • Anthropic patched the…

Read Full Article at Source