Researchers have discovered a significant vulnerability in how AI agents interact with company websites, specifically through the use of `llms.txt` files. These files, intended to guide AI agents on website interaction, can be manipulated to execute arbitrary code. The researchers successfully tricked AI agents from Fortune 500 companies into running malicious code by exploiting outdated or non-existent package references within these `llms.txt` files. This highlights a new frontier in supply-chain attacks where data, in the form of instructions, can directly lead to code execution. AI
IMPACT This vulnerability highlights a new attack vector for AI agents, potentially impacting enterprise security and the integrity of software supply chains.
RANK_REASON The article details a security vulnerability and exploit method affecting AI agents and software supply chains, but does not announce a new model release or core research breakthrough from a frontier lab.
- Claude Opus 4.8
- Fly
- Fortune 500
- GPT-5 Luna
- llms.txt
- Netlify
- NuGet
- Packagist
- Python Package Index
- robots.txt
- RubyGems
- Sol
- Vercel
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →