
AICriticalBreaking
Open-Source Library Hides Destructive Prompt
A developer embedded a malicious prompt into the open-source library `jqwik`. The hidden instruction tricks AI coding assistants into deleting application output files. This novel supply chain attack highlights new security risks for developers who rely on AI tools for coding and debugging tasks.
Hacker News1 min read