Your AI Coding Agent Can Be Attacked by the Repository It Opens
A security finding known as GitSpawn shows that malicious Git configuration, specifically the core.fsmonitor setting, can cause attacker-controlled code to execute when an AI coding agent performs routine operations like…