Claude Code RCE: How a Malicious PR Triggers Code Execution
Abusing the trust boundary in Claude Code for RCE. Trust is never broken and that opens up a few avenues for abuse. Simply opening claude code on a PR can be enough to silently trigger attacker payloads.
[link] [comments]