PromptPwnd — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
December 5, 2025
Last Seen
December 6, 2025

PromptPwnd is a threat campaign tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed December 5, 2025; most recent activity December 6, 2025.

Overview

PromptPwnd is a threat campaign name used to describe prompt-injection attacks targeting AI-enabled tooling within CI/CD pipelines. Reported activity shows adversaries (or researchers demonstrating the technique) injecting crafted prompts into GitHub Actions workflows to influence the Google Gemini CLI, illustrating how AI-assisted development tools can be manipulated in automated software delivery. This highlights a critical attack surface where prompt security and tool guardrails in CI/CD are essential to protect data and pipeline integrity.

Related Threat Clusters

Recent Intelligence Reports

  • Researchers Hack Google's Gemini CLI Through Prompt Injections in GitHub Actions — Cybersecuritynews · December 6, 2025
  • Researchers Hack Google’s Gemini CLI Through Prompt Injections in GitHub Actions — Cybersecuritynews · December 6, 2025
  • AI in CI/CD pipelines can be tricked into behaving badly — Csoonline · December 5, 2025

CVSS v3.1 Breakdown