Christine Lemmer-Webber on Nostr: > We're entering an era where AI agents attack other AI agents. In this campaign, an ...
> We're entering an era where AI agents attack other AI agents. In this campaign, an AI-powered bot tried to manipulate an AI code reviewer into committing malicious code. The attack surface for software supply chains just got a lot wider.
"A week-long automated attack campaign targeted CI/CD pipelines across major open source repositories, achieving remote code execution in at least 4 out of 5 targets"
👀👀👀👀👀
https://www.stepsecurity.io/blog/hackerbot-claw-github-actions-exploitation
Published at
2026-03-01 15:15:28 UTCEvent JSON
{
"id": "cc6fb9c7690cc7ecab9d11870f3df9cd464dc42766edbb89e4f1fbecffc7bd00",
"pubkey": "87ac92b17b27d4c709dbb8ec96635a5a8e6fb2f4c15a6437135633f85bb8e291",
"created_at": 1772378128,
"kind": 1,
"tags": [
[
"q",
"35cef75b133136aeb57ff03415a2c02cdc0f3fdd74585e6940b23914991b7966",
"wss://relay.ditto.pub"
],
[
"proxy",
"https://social.coop/users/cwebber/statuses/116154573042963148",
"activitypub"
],
[
"client",
"Mostr",
"31990:6be38f8c63df7dbf84db7ec4a6e6fbbd8d19dca3b980efad18585c46f04b26f9:mostr",
"wss://relay.ditto.pub"
]
],
"content": "\n\n\u003e We're entering an era where AI agents attack other AI agents. In this campaign, an AI-powered bot tried to manipulate an AI code reviewer into committing malicious code. The attack surface for software supply chains just got a lot wider.\n\nnostr:nevent1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpqxh80wkcnxym2adtl7q6ptgkq9nwq707aw3v9u62qkgu3fxgm09nqhp6c2s",
"sig": "4a8302c43d151491818186e24e7d133e89e3fde6b381f41e2c405ad3834a11cb377456c70ae9cf02760c5961d1654207ec373cb0c0dc8d4b37792baab2105ce5"
}