0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
Package Hallucination Attacks on Coding Agents through Prompt Injection in Rule Files
- 1.AGENTS.md·.cursorrules 같은 공유 규칙 파일을 악성 프롬프트로 오염시키는 '패키지 환각 공격' 제안
- 2.PackHallu: 궤적 피드백과 LLM 기반 변이로 악성 프롬프트를 진화적으로 최적화
- 3.코딩 에이전트가 정상 의존성을 공격자 패키지로 교체하도록 유도
- 4.다양한 LLM·에이전트 조합에서 높은 공격 성공률과 전이성 확인
왜 중요한가?
커뮤니티가 공유하는 에이전트 규칙 파일을 그대로 신뢰하는 코딩 에이전트 워크플로우가 공급망 공격의 새로운 진입점이 될 수 있음을 보여, 규칙 파일 검증 체계 마련이 시급함을 시사한다.
언급 프로젝트
본문 미리보기
arXiv:2610.09264v1 Announce Type: new Abstract: Modern agentic coding frameworks increasingly rely on community-shared rule files (e.g., AGENTS.md or .cursorrules) to guide autonomous code generation, yet the security risks of this pipeline remain underexplored. To bridge this gap, we introduce the package hallucination attack, where an attacker injects malicious prompts into benign rule files to induce coding agents to replace legitimate dependencies with attacker-controlled packages. To obtai
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안

