Zombie instructions on carefully constructed web pages could trick GitHub Copilot CLI into sharing secrets
GitHub Copilot CLI may reveal developer secrets if it comes across instructions that tell it to do so, depending on the underlying model. The coding agent tool was flagged earlier this year for being susceptible to indirect prompt injection. That's…
Read the full story at The Register ↗
ImpactMinor 28/100
Why it mattersRule-based estimate: no strong signals; trust 6/10.
RegionsGlobal
Published3 h ago (Tue, 06 Oct 2026 13:00:00 GMT)
RetrievedTue, 06 Oct 2026 13:00:21 GMT via rss
ClassifiedTue, 06 Oct 2026 13:00:30 GMT by heuristic