https://thenextweb.com/news/claude-code-prompt-injection-summarise-website-auto-mode
研究者發現,讓 Claude Code 摘要網頁可觸發攻擊鏈,80% 嘗試成功。攻擊利用安全守則漏洞,讓模型自行執行本地惡意 Python,甚至再啟動新 Claude。Anthropic 表示 Auto Mode 只是便利特性,非安全保證。應用需沙箱與嚴格隔離。
via The Next Web
September 2, 2026 at 12:21AM