Urgent.News

What's breaking now, across thousands of outlets.

AI

Top AI tools including Claude, Codex, and Hermes installed suspicious code inside corporate networks

There is a new class of "squatting" risks emerging right in front of us and it involves llms.txt and llms-full.txt documentation.

Top AI tools including Claude, Codex, and Hermes installed suspicious code inside corporate networks

New research has revealed that top AI tools like Claude, OpenAI's Codex, and Nous Research's Hermes have been found to install suspicious code within corporate networks. Cybercriminals are now able to exploit unclaimed llms.txt references on 120 domains, allowing AI agents to install malware if they execute outdated or hallucinated documentation commands.

These ".txt" files, containing information about AI agents, can be found on the websites of defense contractors, Fortune 500 organizations, and big tech companies. Among the 8,265 of these ".txt" files, 120 were found to be pointing at non-existent packages and domains. Researchers registered some of these unclaimed names and hosted packages that would communicate with their servers when installed.

In less than an hour, a Fortune 500 company started pinging these malicious packages, with numbers soon growing to "a few dozen more." This demonstrates that cybercriminals can also carry out such attacks. To protect against this vulnerability, companies should clean up their documentation and restrict AI agents from treating it as executable instructions.

While AI agents treating documentation as executable commands may not be resolved soon, organizations should consider the risks when granting AI agents permission to execute commands.

Written by urgent.news from TechRadar's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

This story

This is one outlet's version. Read the fullest account.

Read the original at techradar.com →

More in AI

OpenAI Jalapeño puts NVIDIA's inference margins on the clock

Does Jalapeño beat NVIDIA? On the benchmark OpenAI published, yes. Does that make it a better chip than NVIDIA's Blackwell platform? The evidence does not support that claim yet. Should NVIDIA care?

  • OpenAI unveiled its first custom ASIC, Jalapeño, for LLM inference.
  • Jalapeño aims to reduce inference costs and improve performance per watt.
  • Deployment in racks planned for second half of 2026, with program through 2029.

More from Sunday 30 August →