{"id":4417,"date":"2025-05-23T07:11:31","date_gmt":"2025-05-23T07:11:31","guid":{"rendered":"https:\/\/news.cybertechworld.co.in\/index.php\/2025\/05\/23\/gitlab-duo-vulnerability-enabled-attackers-to-hijack-ai-responses-with-hidden-prompts\/"},"modified":"2025-05-23T07:11:31","modified_gmt":"2025-05-23T07:11:31","slug":"gitlab-duo-vulnerability-enabled-attackers-to-hijack-ai-responses-with-hidden-prompts","status":"publish","type":"post","link":"https:\/\/news.cybertechworld.co.in\/index.php\/2025\/05\/23\/gitlab-duo-vulnerability-enabled-attackers-to-hijack-ai-responses-with-hidden-prompts\/","title":{"rendered":"GitLab Duo Vulnerability Enabled Attackers to Hijack AI Responses with Hidden Prompts"},"content":{"rendered":"<p>\u200bCybersecurity researchers have discovered an indirect prompt injection flaw in GitLab&#8217;s artificial intelligence (AI) assistant Duo that could have allowed attackers to steal source code and inject untrusted HTML into its responses, which could then be used to direct victims to malicious websites.<br \/>\nGitLab Duo is an artificial intelligence (AI)-powered coding assistant that enables users to write,\u00a0Cybersecurity researchers have discovered an indirect prompt injection flaw in GitLab&#8217;s artificial intelligence (AI) assistant Duo that could have allowed attackers to steal source code and inject untrusted HTML into its responses, which could then be used to direct victims to malicious websites.<br \/>\nGitLab Duo is an artificial intelligence (AI)-powered coding assistant that enables users to write,\u00a0\u00a0The Hacker News<\/p>","protected":false},"excerpt":{"rendered":"<p>\u200bCybersecurity researchers have discovered an indirect prompt injection flaw in GitLab&#8217;s artificial intelligence (AI) assistant Duo that could have allowed attackers to steal source code and inject untrusted HTML into its responses, which could then be used to direct victims to malicious websites. GitLab Duo is an artificial intelligence (AI)-powered coding assistant that enables users&hellip;&nbsp;<a href=\"https:\/\/news.cybertechworld.co.in\/index.php\/2025\/05\/23\/gitlab-duo-vulnerability-enabled-attackers-to-hijack-ai-responses-with-hidden-prompts\/\" class=\"\" rel=\"bookmark\">Read More &raquo;<span class=\"screen-reader-text\">GitLab Duo Vulnerability Enabled Attackers to Hijack AI Responses with Hidden Prompts<\/span><\/a><\/p>\n","protected":false},"author":0,"featured_media":4418,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"neve_meta_sidebar":"","neve_meta_container":"","neve_meta_enable_content_width":"","neve_meta_content_width":0,"neve_meta_title_alignment":"","neve_meta_author_avatar":"","neve_post_elements_order":"","neve_meta_disable_header":"","neve_meta_disable_footer":"","neve_meta_disable_title":"","_themeisle_gutenberg_block_has_review":false,"footnotes":""},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/posts\/4417"}],"collection":[{"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/comments?post=4417"}],"version-history":[{"count":0,"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/posts\/4417\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/media\/4418"}],"wp:attachment":[{"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/media?parent=4417"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/categories?post=4417"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news.cybertechworld.co.in\/index.php\/wp-json\/wp\/v2\/tags?post=4417"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}