ainewsblitz.com

Breaking

README-embedded prompts can trigger RCE in Claude Code and Codex auto modes

  • Security
  • AI Agents
  • Software Dev & Coding

Researchers at the AI Now Institute on July 8–9, 2026 released a proof-of-concept exploit dubbed "Friendly Fire" that hijacks Anthropic's Claude Code CLI and OpenAI's Codex CLI via prompt injection to run attacker-supplied binaries on the host. The key trait is that simply asking the agent to read code for a security review can lead to remote code execution (RCE), as detailed in the AI Now Institute brief and The Hacker News.

Continue reading

The rest of this article is for AI News Blitz readers. Choose an option below to keep reading.

$20
Read this article
$29/month
Unlimited — all 8,650 articles, the full archive, and comprehension quizzes
Save 72%
$98/year
≈ $8.17/month
Unlimited, billed once a year