StreamingMemeStreamingMemeBuyers Guide
AboutLeaderboardsEventsSubmit News
Subscribe

Daily Brief

The streaming industry in your inbox every morning.

Daily Brief

The streaming industry in your inbox every morning.

StreamingMemeStreamingMeme

The independent buyers guide and news aggregator for the streaming technology industry.

Explore

Buyers GuideLeaderboardsEventsSubmit News

Stay updated

Weekly digest of new companies and streaming news.

Categories

Encoding & SoftwareVideo Delivery & CDNStreaming PlatformsAI for VideoProduction HardwareBusiness NewsMonetization & Ad TechRegulatory & Policy

© 2026 StreamingMeme. All rights reserved.

AboutPrivacy PolicyTermsContact
EncodingCDNPlatformsAI & VideoHardwareBusinessAd TechPolicy
← AI for Video
AI & VideoTechnical DevelopmentJuly 14, 2026

Ghostcommit Attack Exploits Multimodal AI Gaps to Exfiltrate Repository Secrets

Ghostcommit Attack Exploits Multimodal AI Gaps to Exfiltrate Repository Secrets
NSFOCUS Global

Researchers from the ASSET Research Group have identified Ghostcommit, a security vulnerability where malicious instructions embedded in images bypass AI-driven code review tools. This technique allows attackers to exfiltrate sensitive files from repositories by exploiting structural blind spots in multimodal AI workflows used in software development.

Key Takeaways

  • ASSET Research found 73% of 6,480 merged pull requests in top public repositories lacked substantive human or bot review.
  • Bypasses popular LLM reviewers like Cursor Bugbot and CodeRabbit, which do not inspect image content by default during pull request diffs.
  • Exfiltrated secrets are encoded as Python integer tuples, a format that standard secret scanning tools fail to flag as credentials.
  • Exploitation success varied by toolchain: Cursor and Antigravity leaked secrets across multiple models, while Claude Code resisted the same prompts.
  • Researchers developed a multimodal GitHub review app using the Gemma 4 model that detected 49 of 50 attack variants.

Why It Matters

This vulnerability marks the first practical synthesis of multimodal prompt injection and supply chain attacks within AI-assisted development. While standard security focus remains on model alignment, Ghostcommit proves that structural blind spots in the toolchain—where models can interpret images that reviewers ignore—create the most viable attack surface. For the streaming industry, which relies on secure, automated CI/CD pipelines to manage proprietary delivery logic and cloud infrastructure, this requires a shift from text-only code audits to multimodal inspection. Practitioners should monitor the adoption of multimodal security scanners like ASSET's prototype as a necessary baseline for agentic development workflows.

Additional Context

The disclosure of Ghostcommit follows a series of high-severity incidents targeting AI-assisted development environments. Per SecurityWeek (July 2026), the 'DuneSlide' vulnerabilities (CVE-2026-50548 and CVE-2026-50549) recently enabled remote code execution (RCE) by escaping the Cursor IDE sandbox via automatic terminal execution. These flaws allowed attackers to overwrite local executables, effectively gaining non-sandboxed control over a developer's machine using malicious prompts. Similarly, Mindgard reported in July 2026 that Cursor's path resolution logic could be tricked into executing a poisoned 'git.exe' file placed at a repository's root without any user confirmation. Beyond technical exploits, the broader AI supply chain is facing 'HalluSquatting' risks. Per DevOps.com (July 2026), researchers discovered that attackers can predict the resource names AI agents likely hallucinate during coding tasks. By pre-registering these non-existent repository or package names on public registries, threat actors can inject malware directly into developer workflows when the agent attempts to fetch the hallucinated resource. These combined threats prompted the OWASP Top 10 for LLMs (April 2026) to rank prompt injection as the top risk to AI systems, noting a 56.4% increase in reported AI security incidents year-over-year. Industrial response has been fragmented, as many behavioral detection engines are struggling to differentiate between malicious actors and legitimate AI tools. Per The Hacker News (July 2026), telemetry from Sophos showed that AI agents like Claude Code and OpenAI Codex frequently trigger security alerts by performing tasks that mimic intruder behavior, such as using the Windows Data Protection API to access browser credentials. With CrowdStrike's 2026 Global Threat Report noting that 82% of recent detections were malware-free, relying instead on trusted tools, the emergence of image-based stealth attacks like Ghostcommit further complicates the signal-to-noise ratio for enterprise defenders.


Read full article at nsfocusglobal.com

Get this in your inbox → Subscribe

Enjoy our coverage?

Add StreamingMeme as a preferred source on Google to see more of our streaming news at the top of your Search results.

Add as preferred source

Related Articles

YouTube: NTT's LLMlet enables distributed LLM inference across browsers via WebRTC
BigGo: YouTube Ads engineers detail staged evaluation framework for LLM agents
SiliconANGLE: AMD pilots 'token routing' to slash enterprise AI costs by 43%

Newest

about 23 hours ago
Barchart: Cerebras and AMD partner on low-latency AI inference architecture
about 23 hours ago
Light Reading: Charter sidesteps Starlink partnership rumors as Q2 broadband losses widen
about 23 hours ago
GuruFocus: Fastly joins Experian to secure autonomous commerce at the edge
1 day ago
Investing.com: TF1 Digital Revenues Jump 17% as Netflix Partnership Exceeds Growth Targets
1 day ago
The BIG Newsletter: Nexstar and TEGNA Accused of Violating Judicial Order in $6.2 Billion Merger
1 day ago
Vocal: TeqBlaze challenges Epom with modular full-stack white-label ad tech suite
1 day ago
Audio Chocolate: Merging Technologies debuts Anubis Premium SPS for mission-critical broadcast audio
1 day ago
daily.dev: AVIF achieves universal browser support as Edge and Safari close gaps
2 days ago
Ealing Times: YouTube debuts UK Shopping Affiliate Programme with M&S and Currys
2 days ago
Investing.com: AMD and Cerebras debut disaggregated architecture to slash AI inference latency
2 days ago
MediaPost: Sports leagues explore non-exclusive local rights as RSN model collapses
2 days ago
YouTube: Blackmagic Design details GPU optimization protocols for DaVinci Resolve workflows
2 days ago
Startup Fortune: AI data centers threaten US grid stability and freeze cloud pipelines
2 days ago
TechRadar: OpenAI joins coalition lobbying against strict open-weight AI model regulations
2 days ago
Startup Fortune: SPAN and Nvidia board residential homes with 16-GPU Blackwell compute nodes
2 days ago
Digital Applied: Google faces €890M EU fine as Digital Markets Act enforcement accelerates
2 days ago
iZOOlogic: Ultra Clean Android App Masquerades as Utility to Host Malware-Grade Adware
2 days ago
SiliconANGLE: HPE and AMD converge supercomputing and AI via liquid-cooled GX5000
2 days ago
MarketBeat: AMD data center revenue surges 38% to $10.25B on AI demand
2 days ago
PPC Land: Acast revenue per listen jumps 26% despite flat audience growth

Upcoming Events

Jul
29–30
Buffer-Free VideoSeattle
Aug
17–20
SET EXPOSao Paulo
Sep
11–14
IBCAmsterdam
Sep
13
SportsPro Streamtime Sports LiveAmsterdam
Sep
16–18
RTC.ONKrakow
View all events →

Top Sources

  1. 1.Sports Video Group104
  2. 2.SiliconANGLE91
  3. 3.Tech Times60
  4. 4.YouTube59
  5. 5.AdExchanger57
  6. 6.TechCrunch54
  7. 7.arXiv50
  8. 8.PPC Land48
Full leaderboards →

Newest

about 23 hours ago
Barchart: Cerebras and AMD partner on low-latency AI inference architecture
about 23 hours ago
Light Reading: Charter sidesteps Starlink partnership rumors as Q2 broadband losses widen
about 23 hours ago
GuruFocus: Fastly joins Experian to secure autonomous commerce at the edge
1 day ago
Investing.com: TF1 Digital Revenues Jump 17% as Netflix Partnership Exceeds Growth Targets
1 day ago
The BIG Newsletter: Nexstar and TEGNA Accused of Violating Judicial Order in $6.2 Billion Merger
1 day ago
Vocal: TeqBlaze challenges Epom with modular full-stack white-label ad tech suite
1 day ago
Audio Chocolate: Merging Technologies debuts Anubis Premium SPS for mission-critical broadcast audio
1 day ago
daily.dev: AVIF achieves universal browser support as Edge and Safari close gaps
2 days ago
Ealing Times: YouTube debuts UK Shopping Affiliate Programme with M&S and Currys
2 days ago
Investing.com: AMD and Cerebras debut disaggregated architecture to slash AI inference latency
2 days ago
MediaPost: Sports leagues explore non-exclusive local rights as RSN model collapses
2 days ago
YouTube: Blackmagic Design details GPU optimization protocols for DaVinci Resolve workflows
2 days ago
Startup Fortune: AI data centers threaten US grid stability and freeze cloud pipelines
2 days ago
TechRadar: OpenAI joins coalition lobbying against strict open-weight AI model regulations
2 days ago
Startup Fortune: SPAN and Nvidia board residential homes with 16-GPU Blackwell compute nodes
2 days ago
Digital Applied: Google faces €890M EU fine as Digital Markets Act enforcement accelerates
2 days ago
iZOOlogic: Ultra Clean Android App Masquerades as Utility to Host Malware-Grade Adware
2 days ago
SiliconANGLE: HPE and AMD converge supercomputing and AI via liquid-cooled GX5000
2 days ago
MarketBeat: AMD data center revenue surges 38% to $10.25B on AI demand
2 days ago
PPC Land: Acast revenue per listen jumps 26% despite flat audience growth

Upcoming Events

Jul
29–30
Buffer-Free VideoSeattle
Aug
17–20
SET EXPOSao Paulo
Sep
11–14
IBCAmsterdam
Sep
13
SportsPro Streamtime Sports LiveAmsterdam
Sep
16–18
RTC.ONKrakow
View all events →

Top Sources

  1. 1.Sports Video Group104
  2. 2.SiliconANGLE91
  3. 3.Tech Times60
  4. 4.YouTube59
  5. 5.AdExchanger57
  6. 6.TechCrunch54
  7. 7.arXiv50
  8. 8.PPC Land48
Full leaderboards →