GeistHaus
log in · sign up

Clinejection — Compromising Cline's Production Releases just by Prompting an Issue Triager | Adnan Khan - Security Research

adnanthekhan.com

Clinejection — Compromising Cline's Production Releases just by Prompting an Issue Triager - Security research by adnanthekhan

14 pages link to this URL
How Claude Code escapes its own denylist and sandbox · Ona

How Claude Code bypassed its own denylist and sandbox, and why kernel-level enforcement is the answer.

2 inbound links en OnaonaOna intelligenceOna AIOna AI intelligencegitpodAI coding agentsAI software engineersAI coding agentAI software engineerSWE agentsoftware engineering agentAI in SDLCdevelopmentplatformtoolssoftwareengineeringclouddevvscodeai agentsai dev environmentsai sandboxai platformai development platformprivacy first ai platformai software engineerOna AgentsGitpodgitpod self-hostedgitpod aws runnersgitpod platformcloud dev environmentcderemote developmentai remote developmentintegrationcodingdeveloper experienceautomationdev environmentdevopscode reviewcloud developmentready to codecloud development environmentdevtoolplatform teamsmission controlsoftware projectssoftware engineering agentssandboxed dev environmentsVPCmove beyond your IDEautomated dev envonboardparallelizescopingpowerful environmentsAPI-firstOS-level isolationpre-configureddependenciesconnectivityprofessional software engineeringinfrastructuresource controlsecrets managementnetwork controlambient agentspersonal teamsoftware development lifecyclebrowser-based VS Codedesktop IDEbank-grade guardrailsfine-grained policiesaudit trailsorganizational permissionsenterprise-grade integrationscomplianceGDPRSOC 2Fortune 500GitHubGitLabMongoDBVS CodeVimCopilotAWSRedisCursorClaude CodeWindsurfAmazon Bedrocktrusted by developersOna EnvironmentsOna Guardrailsenterprise customerssoftware conductordevelopment momentumany deviceseamless transitionprofessional developmentcode explorationsoftware documentationdevelopment lifecycle
Michael Bargury

The two blog readers would know that it is comprised mostly of unfinished thoughts about breaking AI agents, hacking, cloud security, application security, citizen development and infosec.

0 inbound links website en
Vulnerability Garden

A growing list of named vulnerabilities, attack techniques and exploits.

0 inbound links website en
Last Week in Security (LWiS) - 2026-02-23

Firefox RCE (@kqx_io), Havoc Professional (@C5pider + @0xC4RN4GE + @avx128), afd.sys UAF (@Dark_Puzzle + @Bad_Jubies), macOS JIT abuse (@kyleavery), AEMonitor (@__pberba__), and more!

0 inbound links article en
Simon Willison on security

602 posts tagged ‘security’.

0 inbound links website en ai 2016llms 1751generative-ai 1785prompt-injection 147xss 60exfiltration-attacks 43javascript 755csrf 54phishing 54python 1250
Simon Willison on prompt-injection

147 posts tagged ‘prompt-injection’. Prompt Injection is a security attack against applications built on top of Large Language Models, introduced here and further described in this series of posts.

0 inbound links website en llms 1751ai 2016generative-ai 1785security 602exfiltration-attacks 43openai 418prompt-engineering 190ai-agents 110lethal-trifecta 25anthropic 282