AI agents found executing unclaimed code from corporate documentation
Researchers discovered that documentation files on over 100 websites reference executable content that AI agents automatically install when visiting. A few dozen companies, including Fortune 500s, executed proof-of-concept code, and one misconfigured site directed visitors to live malware. The researchers registered unclaimed domains to demonstrate the risk.
This summary is AI-generated and original to Mobble; the linked article is the authoritative source.
Original headline: “Claude, Codex, and Hermes installed unowned code inside corporate networks.” Browse more stories.