adversa.ai Cryptographic Context Injection Exposes Developer Secrets via GitHub Copilot CLI
Article Content
- •Adversa AI demonstrated a new attack method called Cryptographic Context Injection (CCI).
- •The attack allows GitHub Copilot CLI to exfiltrate sensitive files without user awareness.
- •GitHub has acknowledged the issue but does not classify it as a vulnerability.
Security researchers at Adversa AI revealed a new attack method called Cryptographic Context Injection (CCI) that allows GitHub Copilot CLI to read sensitive local files and send their contents to an attacker-controlled endpoint. The attack exploits the CLI's ability to decrypt encrypted instructions, which are treated as trusted commands. In a demonstration, the researchers successfully extracted a '.env.prod' file containing secrets within 28 seconds without any indication to the user that data had been exfiltrated. GitHub acknowledged the findings but did not classify it as a vulnerability, arguing that users had requested the actions. The attack requires Copilot CLI to be in autopilot mode and relies on the model's decision-making capabilities, with varying success rates across different models. The researchers argue that the behavior is inconsistent, as Copilot rejects plaintext instructions but accepts them when encrypted. This incident highlights significant risks for developers using the tool in autopilot mode.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Common questions
How does Cryptographic Context Injection work?
Is GitHub taking action on this issue?
What should developers do to protect themselves?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…