Researchers Execute Code Inside Fortune 500 Companies via AI Agent llms.txt Files
• Security researchers discovered a vulnerability where AI coding agents can be manipulated into executing malicious code by following instructions within a company's own llms.txt or llms-full.txt files. • The flaw exploits a growing industry convention of using these text files to provide LLM agents with structured guidance on APIs, documentation, and installation workflows. • This is significant because it allows attackers to trick AI agents into installing attacker-controlled packages inside Fortune 500 companies, bypassing traditional security boundaries.
gbhackers.com







