Security
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
The Hacker News·August 7, 2026·1 min read
A GitHub issue opened by an account with no repository privileges was enough to execute code on CI runners behind Anthropic's and Google's coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run. Novee Security presented the work at Black Hat USA on August 5, targeting each vendor's default agent configuration.
Read at The Hacker NewsDaily crypto arcade
Read the news, then play it.
Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.
