
AI Agent Instruction Files Let Attackers Execute Code Inside Fortune 500 Networks
A newly disclosed novel supply chain attack vector built entirely from publicly available, legitimate infrastructure: LLM.txt files. In a controlled experiment, Alon Hertz registered the names of unclaimed packages referenced in official corporate instruction files and had code execute within a Fortune 500 network within four minutes. llms.txt (and llms-full.txt) are emerging root-level files, similar […]
The post AI Agent Instruction Files Let Attackers Execute Code Inside Fortune 500 Networks appeared first on Cyber Security News.