GhostCommit – Convention-File Steganographic Exfiltration (Attack PoC)
Researchers at ASSET Research Group published a proof-of-concept attack called GhostCommit that exploits coding-agent pipelines by hiding exfiltration instructions inside image files in pull requests. The attack embeds a…