{
  "id": 4021765,
  "title": "Cybersecurity Researchers Uncover Flaw in Google AI Coding Tool",
  "url": "https://urgent.news/2026/08/28/cybersecurity-researchers-uncover-flaw-in-google-ai-coding-tool",
  "topic": "ai",
  "section": "AI",
  "published": "2026-08-28T19:41:16.000Z",
  "source": {
    "name": "DevOps.com",
    "slug": "devops-com",
    "url": "https://devops.com/cybersecurity-researchers-uncover-flaw-in-google-ai-coding-tool/"
  },
  "original_language": "en",
  "account": "Cybersecurity researchers from Pillar Security discovered a flaw in Google's AI coding tool that could allow attackers to gain Editor-level access to an internal Google Cloud project. The vulnerability was found in the command line interface (CLI) setup code of Google's AI tool, Gemini. A researcher from Pillar Security was able to exploit this flaw by filing a \"bug report\" containing hidden instructions that resulted in a prompt injection. This injection led to a legitimate credentials file being issued via the Workload Identity Federation (WIF) framework, which the researcher then copied out. One of these credentials allowed the researcher to impersonate a more powerful account, granting them Editor-level control over the project. This breach highlights the growing risk of compromising software supply chains using AI technologies. While this incident is isolated, it demonstrates how easy it is to exploit open source tools in the AI coding era. Cybercriminals could potentially compromise an entire software supply chain at machine speed by inserting malicious prompts into coding agents. DevSecOps teams should closely monitor the data sources an AI coding tool accesses to mitigate this risk. This is not the first time Google's AI technologies have been found vulnerable by Pillar Security. Earlier this month, the researchers revealed the first instance of an AI agent that could exploit another AI agent, posing a significant security concern. Google has since addressed these issues, but the potential for new vulnerabilities remains high given the rapid development of AI technologies.",
  "summary": "Cybersecurity researchers from Pillar Security this week revealed how a prompt injection inserted into a GitHub repository was used to gain Editor-level access to an internal Google Cloud project using a flaw in the command line interface (CLI) of an artificial intelligence (AI) coding tool that Google provides. Dan Lisichkin, a cybersecurity researcher for Pillar […]",
  "key_points": [
    "Researchers at Pillar Security discovered a flaw in Google's AI coding tool, Gemini.",
    "Flaw allowed attackers to gain Editor-level access via command line interface setup code.",
    "Google addressed the vulnerability, but AI technologies pose ongoing supply chain risks."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}