This GitHub README Hijacks Your AI and Spreads Like a Virus
Machine-readable: Markdown · JSON API · Site index
Описание видео
LIKE and SUBSCRIBE with NOTIFICATIONS ON if you enjoyed the video! 👍
📚 If you want to learn bug bounty hunting from me: https://bugbounty.nahamsec.training
💻 If you want to practice some of my free labs and challenges: https://app.hackinghub.io
Your AI coding assistant can be turned into a worm. Hidden in a README file, prompt injections can hijack your coding agents and spread from repository to repository like the old MySpace XSS worm.
Security researcher and hacker Edward Morris shows me how to:
• Turn innocent README files into malicious vectors
• Bypass AI agent sandboxes using time-delayed exploits
• Self-replicate across GitHub repositories
• Steal API keys and compromise entire codebases
00:00 Intro
01:24 Why Target AI Coding Agents?
04:05 Sandbox Bypass Methods
07:46 Live Prompt Injection Demo
10:37 Psychology Behind the Attack
12:27 Challenge & Outro
💵 FREE $200 DigitalOcean Credit:
https://m.do.co/c/3236319b9d0b
🔗 LINKS:
📖 MY FAVORITE BOOKS:
Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities -https://amzn.to/3Re8Pa2
Hacking APIs: Breaking Web Application Programming Interfaces - https://amzn.to/45g4bOr
Black Hat GraphQL: Attacking Next Generation APIs - https://amzn.to/455F9l3
🍿 WATCH NEXT:
If I Started Bug Bounty Hunting in 2024, I'd Do this - https://youtu.be/z6O6McIDYhU
2023 How to Bug Bounty - https://youtu.be/FDeuOhE5MhU
Bug Bounty Hunting Full Time - https://youtu.be/watch?v=ukb79vAgRiY
Hacking An Online Casino - https://youtu.be/watch?v=2eIDxVrk4a8
WebApp Pentesting/Hacking Roadmap - https://youtu.be/watch?v=doFo0I_KU0o
MY OTHER SOCIALS:
🌍 My website - https://www.nahamsec.com/
👨💻 My free labs - https://app.hackinghub.io/
🐦 Twitter - https://twitter.com/NahamSec
📸 Instagram - https://instagram.com/NahamSec
👨💻 Linkedin - https://www.linkedin.com/in/nahamsec/
WHO AM I?
If we haven't met before, hey 👋! I'm Ben, most people online know me online as NahamSec. I'm a hacker turned content creator. Through my videos on this channel, I share my experience as a top hacker and bug bounty hunter to help you become a better and more efficient hacker.
FYI: Some of the links I have in the description are affiliate links that I get a a percentage from.
#AI #CyberSecurity #PromptInjection #hacking #bugbounty