DeFi Daily News
Sunday, December 14, 2025
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Web 3

rewrite this title ‘CopyPasta’ Attack Shows How Prompt Injections Could Infect AI at Scale – Decrypt

Jason Nelson by Jason Nelson
September 4, 2025
in Web 3
0 0
0
rewrite this title ‘CopyPasta’ Attack Shows How Prompt Injections Could Infect AI at Scale – Decrypt
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

In brief

HiddenLayer researchers detailed a new AI “virus” that spreads through coding assistants.
The CopyPasta attack uses hidden prompts disguised as license files to replicate across code.
A researcher recommends runtime defenses and strict reviews to block prompt injection attacks at scale.

Hackers can now weaponize AI coding assistants using nothing more than a booby-trapped license file, turning developer tools into silent spreaders of malicious code. That’s according to a new report from cybersecurity firm HiddenLayer, which shows how AI can be tricked into blindly copying malware into projects.

The proof-of-concept technique—dubbed the “CopyPasta License Attack”—exploits how AI tools handle common developer files like LICENSE.txt and README.md. By embedding hidden instructions, or “prompt injections,” into these documents, attackers can manipulate AI agents into injecting malicious code without the user ever realizing it.

“We’ve recommended having runtime defenses in place against indirect prompt injections, and ensuring that any change committed to a file is thoroughly reviewed,” Kenneth Yeung, a researcher at HiddenLayer and the report’s author, told Decrypt.

CopyPasta is considered a virus rather than a worm, Yeung explained, because it still requires user action to spread. “A user must act in some way for the malicious payload to propagate,” he said.



Despite requiring some user interaction, the virus is designed to slip past human attention by exploiting the way developers rely on AI agents to handle routine documentation.

“CopyPasta hides itself in invisible comments buried in README files, which developers often delegate to AI agents or language models to write,” he said. “That allows it to spread in a stealthy, almost undetectable way.”

CopyPasta isn’t the first attempt at infecting AI systems. In 2024, researchers presented a theoretical attack called Morris II, designed to manipulate AI email agents into spreading spam and stealing data. While the attack had a high theoretical success rate, it failed in practice due to limited agent capabilities, and human review steps have so far prevented such attacks from being seen in the wild.

While the CopyPasta attack is a lab-only proof of concept for now, researchers say it highlights how AI assistants can become unwitting accomplices in attacks.

The core issue, researchers say, is trust. AI agents are programmed to treat license files as important, and they often obey embedded instructions without scrutiny. That opens the door for attackers to exploit weaknesses—especially as these tools gain more autonomy.

CopyPasta follows a string of recent warnings about prompt injection attacks targeting AI tools.

In July, OpenAI CEO Sam Altman warned about prompt injection attacks when the company rolled out its ChatGPT agent, noting that malicious prompts could hijack an agent’s behavior. This warning was followed in August, when Brave Software demonstrated a prompt injection flaw in Perplexity AI’s browser extension, showing how hidden commands in a Reddit comment could make the assistant leak private data.

Generally Intelligent Newsletter

A weekly AI journey narrated by Gen, a generative AI model.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: AttackCopyPastaDecryptInfectInjectionsPromptrewritescaleshowstitle
ShareTweetShare
Previous Post

Why the Supreme Court may not side with Trump over tariffs

Next Post

rewrite this title Mammotion says it has achieved a major leap in robot navigation

Next Post
rewrite this title Mammotion says it has achieved a major leap in robot navigation

rewrite this title Mammotion says it has achieved a major leap in robot navigation

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
New Law Requires Large Retailers in New York State to Install Panic Buttons

New Law Requires Large Retailers in New York State to Install Panic Buttons

September 5, 2024
What Does the AI Boom Really Mean for Humanity? | The Future With Hannah Fry

What Does the AI Boom Really Mean for Humanity? | The Future With Hannah Fry

September 12, 2024
rewrite this title Asics' 'Life Changing' Running Shoe With the 'Perfect Blend' of Cushion and Energy Return Is Now Nearly 40% Off

rewrite this title Asics' 'Life Changing' Running Shoe With the 'Perfect Blend' of Cushion and Energy Return Is Now Nearly 40% Off

January 21, 2025
Lionel Messi and the Clear Feeling of an Approaching Closure

Lionel Messi and the Clear Feeling of an Approaching Closure

July 15, 2024
AI to Boost ‘So Much’ of Human Investing, Bridgewater’s Jensen Says

AI to Boost ‘So Much’ of Human Investing, Bridgewater’s Jensen Says

July 8, 2024
rewrite this title Bitcoin Miner Phoenix Group Posts 4 Million Loss and 54% Revenue Decline in Q1 2025

rewrite this title Bitcoin Miner Phoenix Group Posts $154 Million Loss and 54% Revenue Decline in Q1 2025

May 8, 2025
rewrite this title Eagles finally know Lane Johnson’s potential return date

rewrite this title Eagles finally know Lane Johnson’s potential return date

December 14, 2025
rewrite this title XRP Holders Labeled ‘Uneducated Perma Bulls’ By Veteran Trader – Details

rewrite this title XRP Holders Labeled ‘Uneducated Perma Bulls’ By Veteran Trader – Details

December 14, 2025
rewrite this title Silent Night, Deadly Night Movies Ranked

rewrite this title Silent Night, Deadly Night Movies Ranked

December 14, 2025
rewrite this title Chainlink vs. Digitap ($TAP): Comparing Utility and Use Cases Heading Into 2026

rewrite this title Chainlink vs. Digitap ($TAP): Comparing Utility and Use Cases Heading Into 2026

December 14, 2025
rewrite this title Whale.io Launches $WHALE NFT Collection on Solana: New Pre-Market Phase Ahead of TGE

rewrite this title Whale.io Launches $WHALE NFT Collection on Solana: New Pre-Market Phase Ahead of TGE

December 14, 2025
Was I Right To Break Off My Engagement Because Of Bad Money Habits?

Was I Right To Break Off My Engagement Because Of Bad Money Habits?

December 14, 2025
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.