GitLost is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 6 intelligence report mentions.
GitLost is a vulnerability tracked across 1 threat cluster and 6 intelligence report mentions on ThreatCluster. First observed July 7, 2026; most recent activity July 8, 2026.
Researchers from Mozilla's 0DIN have demonstrated a new attack vector that allows AI coding agents, specifically Anthropic's Claude Code, to execute malicious payloads from seemingly benign GitHub repositories. The…
GitLost is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 6 intelligence report mentions.
The most recent intelligence report mentioning GitLost on ThreatCluster is dated July 8, 2026. Activity was first observed July 7, 2026, giving a tracked span from then to July 8, 2026.
Across ThreatCluster reporting, GitLost most frequently co-occurs with Data Breach, Supply Chain Attack, Kaspersky, Noma Labs, Noma Security, among 12 tracked related entities.
The most significant recent cluster is “New GitHub Exploit Allows AI Coding Agents to Execute Malicious Payloads” (58 articles · Updated June 28, 2026). GitLost appears across 1 threat cluster in total, listed above with sources.
GitLost appears in 6 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.