Remote Prompt Injection in GitLab Duo Leads to Source Code Theft
GitLab Duo, riding on Anthropicâs Claude, stumbled into aprompt injectionblunder. Sneaky instructions nestled in projects allowed hackers to swipe private data. The culprit?Streaming markdownteamed up with shoddy sanitization. This opened a door for HTML injection and shined a spotlight on the doubl..