Researchers cause GitLab AI developer assistant to turn safe code malicious
Ars Technica
MAY 23, 2025
Researchers from security firm Legit on Thursday demonstrated an attack that induced Duo into inserting malicious code into a script it had been instructed to write. All thats required is for the user to instruct the chatbot to interact with a merge request or similar content from an outside source. Read full article Comments
Let's personalize your content