technspire
Home
TeamBlogGuides
← Back to Blog

Posts tagged with "Coding Agents"

Found 1 post

Security & Compliance
September 7, 2026

GitSpawn: a malicious repo can hijack your coding agent

A repository that arrives as a zip, sync folder or USB stick can execute attacker code the moment a CLI coding agent opens it, before any approval prompt and outside the agent sandbox. Manifold Security's GitSpawn disclosure covers eight findings across Claude Code, Codex, Cursor, Goose, Hermes Agent, Qwen Code and Grok Build, with four unpatched at publication.

GitSpawn
Coding Agents
Claude Code
Supply Chain Security
Git
NIS2
Developer Security
AI Agents
Vulnerability Disclosure
By Falak Mahmood
technspire

Leading provider of AI services, cloud development, and digital transformation solutions for Swedish enterprises and government agencies.

Org.nr: 559022-9422
VAT: SE559022942201

Services

  • Azure OpenAI Integration
  • Microsoft 365 Copilot
  • Next.js & React Development
  • TypeScript Modernization
  • Payment System Integration
  • On-Premise AI Solutions
  • Cloud Migration

Company

  • Solution Examples
  • Our Team
  • Blog
  • Guides
  • Contact

Contact

  • Markörvägen 1a
    Stockholm
    Sweden
  • hello@technspire.com
© 2026 Technspire AB. All rights reserved.
Privacy PolicyTerms of ServiceCookie Policy