Reading up on Manifold Security
1 deep · digging since sep 05
- GitSpawn: A Single Flaw Lets Untrusted Repos Run Code in Claude Code, Codex, Cursor, and Grok - Manifold Security
Researchers reveal that CLI AI coding agents automatically run git commands that can execute arbitrary code from a repository’s .git/config, allowing remote code execution via malicious repos.