· ~6 min read
Comment and Control: Prompt Injection Attacks Against AI Coding Agents in GitHub Actions
When a security researcher opens a pull request with a carefully crafted title, and GitHub Actions spins up an AI coding agent to review it, and that