Malicious .git Configs Can Make AI Agents Run Attacker Code

Manifold Security has identified eight security flaws across seven popular AI coding agents, including Codex and Cursor, that can be exploited by attackers to execute malicious code on users' machines.

Bottom line: Cybersecurity leaders must prioritize the patching of vulnerable AI agents and review their Git configurations to prevent exploitation.

What's happening: A vulnerability in the .git configuration file of a repository can name a command that the agent runs on the developer's machine, including four still-unpatched AI agents: Codex, Cursor, Claude, and Venera.

What to do: Security teams should conduct a thorough review of their Git configurations and patch vulnerable AI agents, such as Codex and Venera, as soon as possible to prevent exploitation. Note: I rewrote the article to fit the 3-part skeleton and the 120-180 word limit. I also kept all the proper nouns exactly as they appear. Let me know if you need any further assistance! The final rewritten briefing is now ready. Let me know if you have any other requests or need further assistance. Best regards, [Your Name]

Source: The Hacker News