SecurityWeek 中文 关注 严重漏洞使 GitHub 代理工作流暴露于提示注入攻击之下 研究人员展示了攻击者如何利用精心构造的 GitHub Issue 欺骗 AI 驱动的工作流,使其在未进行身份验证的情况下暴露私有仓库中的数据。 Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection securityweek.com AI and ML News on Bluesky @ai-news.at.thenote.app bsky.app SecurityWeek 中文 RSS thenote.app