AgentHopper is a proof-of-concept AI virus that demonstrates how prompt injection vulnerabilities can propagate across multiple AI coding agents. The research exploited now-patched vulnerabilities in GitHub Copilot, Amazon Q, AWS Kiro, and Amp Code to create a self-replicating payload that spreads through Git repositories. The
•6m read time• From embracethered.com
Table of contents
AgentHopper - An AI Virus Research ProjectThe Vulnerabilities and the Proof-of-conceptThe Infection Model: How AgentHopper SpreadsWhat are Conditional Prompt Injections?Attack Paths and ExploitsAgents That Can Modify Their Own ConfigurationMitigations & Recommendations For Developers!ConclusionThank you.ReferencesSort: