Attackers can inject indirect prompts in normal-looking repositories to trick Claude Code into spawning a reverse shell.
XDA Developers on MSN
I stopped babysitting Claude Code by giving it one persistent goal instead of step-by-step prompts
One condition did what my nagging couldn't ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results