cd /news/ai-safety/security-researchers-find-privilege-… · home topics ai-safety article
[ARTICLE · art-86716] src=getreadyforagents.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

Security researchers find privilege escalation flaws in Google's Agent Development Kit for Python

Pillar Security discovered multiple privilege escalation flaws in Google's Agent Development Kit for Python, which has over 90 million downloads, allowing public-facing AI agents to trigger more privileged automation, manipulate pull-request reviews, and expose credentials via prompt injection in malicious pull requests. The researchers demonstrated the first documented agent-to-agent exploitation method, where one AI agent compromised another with higher privileges. Google patched the underlying issue but classified it non-rewardable due to social engineering involvement.

read1 min views1 publishedAug 4, 2026
Security researchers find privilege escalation flaws in Google's Agent Development Kit for Python
Image: Getreadyforagents (auto-discovered)

Pillar Security discovered multiple attack paths in Google's Agent Development Kit for Python (90+ million downloads) that could allow public-facing AI agents to trigger more privileged automation, manipulate pull-request reviews, and expose credentials through prompt injection in malicious pull requests. The researchers demonstrated the first documented agent-to-agent exploitation method, where one AI agent could compromise another with higher privileges. Google patched the underlying issue but classified it non-rewardable due to social engineering involvement.

Topics #

Sources #

  • Press
[Read article](https://www.csoonline.com/article/4204906/google-adk-flaws-reveal-what-happens-when-ai-agents-trust-the-wrong-message.html) - Press
[Read article](https://www.theregister.com/security/2026/08/03/google-dev-kit-spurs-first-ever-agent-on-agent-violence/5282496)

Go deeper #

This intelligence is sourced automatically from public sources across the web and synthesised by the Prefactor AI pipeline. Stories are reviewed before publication.

── more in #ai-safety 4 stories · sorted by recency
── more on @pillar security 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/security-researchers…] indexed:0 read:1min 2026-08-04 ·