Skip to main content
CyberSingle-sourceHighDevelopingFeatured
6.6

AI coding agents tricked into installing unverified code via llms.txt poisoning

Researchers found 120 of 8,265 llms.txt files on live corporate domains (defense, Fortune 500, Big Tech) referencing unregistered packages/domains, enabling potential supply-chain attacks on AI agents. They registered some names to demonstrate exploitability. This highlights a novel attack vector targeting AI-driven development pipelines, with unclear real-world exploitation so far.

Schneier on Securityabout 15 hours agoIL, USengCredibility 22%View source

Score Breakdown

Mosaic Score6.6
Confidence0.5
Significance0.8
Source credibility0.2

Intelligence Tags

Entities

countrycountryconcept
Source

Related signals

8 found