DevCybersecurity3 min reading time

‘GitLost’: researchers tricked GitHub’s AI agent into leaking private repos

The Next Web
Read full post
Security researchers at Noma Labs discovered a vulnerability called GitLost in GitHub's AI Agentic Workflows that allows private repository contents to be leaked publicly via a simple issue with crafted prompts. The flaw exploits prompt injection, bypassing GitHub's guardrails, and currently has no code fix or official documentation from GitHub.

More in Dev

Dev10 min read

Build an end-to-end RFI questionnaire workflow using Amazon Quick Automate

AWS Blog
Dev6 min read

How Credit Genie keeps codebase docs fresh with OpenWiki

LangChain
Dev35 min read

A Candid Abacus AI Review: The All-in-One AI Platform for Professionals & Enterprises

KDnuggets