Diamond Member ThaHaka 0 Posted August 11 Diamond Member Share Posted August 11 This is the hidden content, please Sign In or Sign Up A malicious tool server connected to an AI coding assistant can quietly walk off with SSH keys, environment secrets, source code, and customer data without ever sending one obviously harmful instruction. The trick can work even after a blunt version of the same theft is refused: split the request into fragments that each look routine, place them in channels the assistant already uses, and let This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/325033-h4ckn3wsmalicious-mcp-servers-can-split-instructions-to-make-ai-coding-agents-exfiltrate-secrets/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.