GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks

The safety check that is supposed to stop an AI coding agent from running a dangerous command can be walked straight past using a shell trick that has been public for decades.

New research from Adversa AI, which is named the bypass GuardFall, found it works against ten of the eleven popular open-source coding and computer-use agents the firm tested. Only one, “Continue,” was built to

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

How Japan’s railways stayed one while splitting apart

How Japan’s railways stayed one while splitting apart Source: Hacker News

SpaceXAI’s Grok 4.6 Scores 61 on the Artificial Analysis Intelligence Index

SpaceXAI’s Grok 4.6 Scores 61 on the Artificial Analysis Intelligence Index Source: Hacker News

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score Bugs

Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.9 CVSS Score Bugs Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS