submitted by /u/kev-thehermit
[link] [comments]
Reading view
Claude Code RCE: How a Malicious PR Triggers Code Execution
Abusing the trust boundary in Claude Code for RCE. Trust is never broken and that opens up a few avenues for abuse. Simply opening claude code on a PR can be enough to silently trigger attacker payloads.
[link] [comments]
MeshCentral: From XSS to RCE
Using Claude Code to find and weaponise an XSS in MeshCentral using a rogue client, resulting in RCE.
[link] [comments]