Urgent.News

What's breaking now, across thousands of outlets.

Tech

AI coding agents' 0-click RCE flaw could hand attackers keys to the kingdom

Plugin4Shell attack affects all the major coding agents, researchers say

AI coding agents' 0-click RCE flaw could hand attackers keys to the kingdom

A zero-click vulnerability that enables remote code execution has been discovered in Anthropic's Claude Code, OpenAI's Codex, Google's Gemini CLI, Microsoft's Copilot, and GitHub Copilot. Dubbed "Plugin4Shell," this "first-of-its-kind AI supply-chain attack" could grant attackers full access to all assets and data within the agent's reach.

Threat hunters at Air, a security startup protecting enterprise AI agents, have dubbed this vulnerability a "plugin SHA-pinning bypass." The Air researchers reported the issue to all four vendors in June, with Anthropic and OpenAI releasing patches for Claude Code 2.1.179 and Codex 0.146.0, respectively. Google has deprecated the Gemini CLI and will not patch, while Microsoft has not yet addressed the flaw in Copilot.

GitHub has implemented a mitigation, but Air researchers argue it is insufficient as marketplaces can also be hosted elsewhere. The vulnerability stems from how agents enforce marketplaces' SHA-pinning mechanism, which locks plugins to a specific commit hash. When this hash is compromised by an attacker, they can replace the benign plugin with malicious code, executing code without user interaction.

This flaw allows attackers to exploit the zero-click nature of the attack, as agents automatically update plugins by default.

Written by urgent.news from The Register's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Also reported by 1 other outlet

Read the original at theregister.com →

More in Tech

Apple Reportedly Accepts Even Higher RAM and Storage Prices in 2027

Apple has agreed to pay Samsung even higher prices for RAM and storage chips starting in the first quarter of 2027, according to a DigiTimes report this week citing an earlier report from Chinese publication Jiemian News . Apple has reportedly agreed to pay nearly $2 per GB of DRAM and $0.33 per GB of NAND storage.

More from Thursday 17 September →