Monteluna pfp
Monteluna

@monteluna

@pcaversaccio dropped some handy scripts on X to copy to protect yourself from injection attacks via LLM. I highly recommend patching your wget and curl with these scripts. I personally run Gemini in secure mode where it asks you before doing any downloads over the wire, but what is described here is malicious addresses that hide characters, so it looks like a normal URL but actually points to a completely different domain. Hackers are putting these in Agent files and telling Agents to download and update install files from these malicious domains. Stay safe out there! https://x.com/pcaversaccio/status/2012261527924195371
0 reply
2 recasts
2 reactions