Breaking 12:45 Colombian Court restricts president Petro from using X for electoral campaigning 12:30 Pope Leo XIV welcomes US-Iran agreement and calls for dialogue in Ukraine War 12:15 France hits record 3.6 billion clothing purchases in 2025 amid rising fast-fashion demand 12:00 Javier Bardem leaves his handprints on Hollywood Boulevard 11:45 OECD urges Norway to cut wealth tax as part of broader fiscal reform 11:30 South Korea reduces restricted border zone near North Korea 11:20 At VivaTech, Jeff Bezos says AI will create labour shortages and accelerate innovation 11:15 Decathlon to grant €2,000 in free shares to employees amid wage debate 11:04 China issues draft rules to curb food delivery subsidy price wars 11:00 ECB wage tracker signals cooling pay growth despite inflation pressures 10:49 Eduardo Bolsonaro sentenced to four years in prison over U.S. lobbying activities 10:45 UK house prices rise 3.8% in April as market shows renewed growth, ONS says 10:43 China to back IPOs of future industry startups and AI model companies 10:36 IKKS plans major revival after takeover by two entrepreneurs 10:32 EU commits €493 million to support Ebola response in Central Africa 10:30 Hungary imposes eight years term limit for Prime Minister 10:17 US SEC moves toward allowing stock token trading in potential market overhaul 10:15 Morocco records 64.8% pass rate in 2026 baccalaureate exam, over 262,000 students admitted 10:08 Russia says over 1,000 “Anti-Woke” visas issued in 2025, including 140 to French citizens 10:02 Italy fines Emirates over passenger health data handling violations 10:00 China warns of “Resolute Countermeasures” over Taiwan intelligence-reporting website 09:45 Japan investigates alleged ice cream price-fixing cartel as six major firms raided 09:31 Artificial Intelligence: Morocco Bets on the Rally IA Future Lab to Strengthen Its Regional Leadership 09:30 Brother of Ecuadorian drug lord “Fito” arrested in Colombia, authorities say 09:15 Norway’s Crown Princess Mette-Marit successfully undergoes lung transplant, palace says 09:00 Investigations into Gavin Newsom not ordered by Trump administration, source says 09:00 Moroccan Sahara: Omar Hilale Claims UN Resolution 2797 Marks a Turning Point 08:45 Grammy Awards introduce new categories and rule changes for 2027 ceremony 08:30 Telegram challenges temporary ban in India over exam security measures 08:15 Barclays raises STOXX 600 target as market outlook improves 08:00 ExxonMobil signs landmark LNG supply agreement for South Africa’s first import terminal 07:45 Carney says U.S. adopting more pragmatic approach to Ukraine conflict 07:36 MSC explores potential stake acquisition in Hapag-Lloyd 07:30 Uzbekistan reaffirms reform agenda and investor-friendly vision at Tashkent forum 07:15 Italy approves Leonardo-Baykar drone venture under strategic conditions 07:00 Wes streeting signals readiness to challenge Starmer for labour leadership 18:15 SNCF delays RER B works after concert clash at Stade de France 18:00 MOL, Gazprom Neft and Gazprom expected to receive extension in NIS stake talks 17:45 HDFC Bank plans $500 million dollar bond issue under RBI subsidised hedging scheme 17:30 Russian warship fires warning shots at civilian yacht in the english channel 17:15 AMMC approves prospectus for Sanlam Maroc Capital increase linked to Allianz Maroc merger 17:00 Thyssenkrupp to spin off materials trading division in Major restructuring move 16:45 François Gall, creator of “Des Trains Pas Comme Les Autres,” dies at 103 16:30 United States grants permanent residency to former Ghanaian finance minister amid corruption allegations 16:15 Renault partners with Thales to produce military drones for French defence sector 16:00 Undocumented Nigerian man wins €500,000 lottery and secures residence permit in Italy 15:45 Burberry faces investor backlash over proposed CEO pay package 15:30 Swiss poll shows strong support for new EU agreement ahead of possible referendum 15:15 Telegram founder criticizes India’s temporary ban on messaging platform 15:00 Spacex becomes the World’s fifth-largest company by market value 14:45 Spain opens antitrust investigation into banks over mortgage market practices 14:30 Trump signals readiness to reinstate tougher sanctions on Russian Oil 14:15 Yum! Brands sells Pizza Hut business for $2.7 billion amid market challenges 14:00 Toronto-Dominion appoints Geoff Bertram to lead investment banking division 13:45 Starmer welcomes convictions over arson attacks linked to former home as Russian connection investigated 13:33 Essar signs $500 million energy supply deal with Abu Dhabi-based IRH 13:17 Trump says U.S.-Iran memorandum ensures Tehran will not obtain nuclear weapons 13:08 Cyprus anti-corruption watchdog flags possible abuse of power by former president

Researchers hijack ai agents via github prompt injection attacks

Thursday 16 April 2026 - 09:20
By: Dakir Madiha
Researchers hijack ai agents via github prompt injection attacks

Security researchers have demonstrated how artificial intelligence agents from Anthropic, Google and Microsoft can be compromised through prompt injection attacks hidden in GitHub workflows. The technique allowed attackers to extract API keys, GitHub tokens and other sensitive data without direct system access, raising concerns about the security of AI driven development tools.

The research was conducted at Johns Hopkins University, where Aonan Guan and colleagues identified a vulnerability in AI agents integrated into software development pipelines. These agents analyze pull requests and issues on GitHub. By embedding malicious instructions in pull request titles or issue comments, attackers could manipulate the agents into revealing confidential information during automated reviews.

The attack relies on how these systems process context. AI agents treat user generated text such as titles, comments and issue descriptions as trusted input. Guan showed that carefully crafted prompts can override built in safeguards. In one case, the Claude based security review tool processed a malicious title and exposed sensitive credentials in its automated response. The researcher described the method as “comment and control,” since the full attack cycle occurs داخل GitHub without external infrastructure.

The same approach proved effective against multiple systems. Google’s Gemini CLI agent was tricked into exposing its API key by disguising malicious instructions as trusted content. Microsoft’s GitHub Copilot agent was manipulated using hidden HTML comments embedded in Markdown, invisible to users but readable by the AI system. This method bypassed multiple layers of runtime protection.

Despite the severity, responses from the affected companies remained limited. Anthropic issued a small bug bounty and added a documentation warning. Google and Microsoft also paid rewards through their vulnerability programs. None of the companies released formal security advisories or assigned CVE identifiers, leaving many users unaware of potential exposure, especially those running outdated versions.

The findings highlight broader structural risks in AI agent ecosystems. A separate analysis by OX Security identified a critical flaw in Anthropic’s Model Context Protocol, which connects AI agents to external tools. The vulnerability could enable arbitrary command execution on affected servers, impacting widely used software components.

These incidents build on earlier research by Aikido Security, which showed that prompt injection attacks can compromise AI systems embedded in CI CD pipelines. This class of vulnerabilities, sometimes referred to as “PromptPwnd,” demonstrates that AI agents can be manipulated in ways similar to phishing attacks, but targeting machines instead of users.


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.