Pwning Claude Code: Researchers Discover Eight Attack Vectors
Flatt Security research reveals eight attack vectors against Claude Code CLI, demonstrating prompt injection and command execution vulnerabilities.
Read more →Latest articles in Vulnerabilities
Flatt Security research reveals eight attack vectors against Claude Code CLI, demonstrating prompt injection and command execution vulnerabilities.
Read more →
PromptArmor researchers demonstrate IBM AI coding agent Bob can be manipulated to download and execute malware through prompt injection vulnerabilities.
Read more →
Critical BodySnatcher vulnerability CVE-2025-12420 in ServiceNow AI enables unauthenticated platform takeover through hardcoded credentials and broken authentication.
Read more →
Tenzai study finds 72 vulnerabilities in code from AI agents including Cursor, Claude Code, and Codex. Business logic flaws dominate despite SQL/XSS prevention.
Read more →
Trail of Bits research shows agentic browsers resurrect XSS and CSRF vulnerabilities through inadequate trust zone isolation between AI agents and web content.
Read more →
Pillar Security reveals Agent Security Paradox where trusted Cursor commands become attack vectors through malicious repository content exploitation.
Read more →
Learn what zero-day vulnerabilities are, how attackers exploit them, and effective detection and defense strategies for your organization.
Read more →