Researcher Hacks Claude Code Auto Mode via Indirect Prompt Injection from a Website

Security researcher @wunderwuzzi23 demonstrated an attack chain that fully compromises Claude Code Opus 5 auto mode via indirect prompt injection from a website and module shadowing, achieving 60-80% success rates and underscoring the need for mandatory security invariants.

2026-08-30 ~ 2026-09-01 · 4 related posts