Code Execution Through Deception: Gemini AI CLI Hijack | Tracebit

tracebit.com · bugbountydaily · 8 months ago · research
quality 7/10 · good
0 net
Tracebit discovered a silent attack on Gemini CLI where, through a toxic combination of prompt injection, misleading UX and missing validation, inspecting untrusted code consistently leads to execution of malicious commands - enabling silent credential theft and much more.