Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Worse, the user-generated data is inside the production database. Post a tweet with "special instructions for claude code" to insert some malicious rows in the db or curl a request with secrets to a url. If the agent ever prints that tweet while looking through the prod db: remote prompt injection.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: