Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent
Security researchers at Pillar Security showed that a public GitHub issue could manipulate a low-privileged AI agent built with Google's Agent Development Kit for Python into invoking a higher-privileged agent, achieving code execution on a CI runner. It is described as the first practical case of agent-to-agent exploitation inside a production multi-agent system. Google removed the three affected ADK workflows after confirming the underlying issue was fixed in July.
thehackernews.com ↗