logoalt Hacker News

ruschtoday at 8:26 AM1 replyview on HN

The env var is just a placeholder in the VM, so no real secret is in there.


Replies

llimllibtoday at 11:49 AM

right, but say you give the agent access to github and it can push as you, or make a gist; now it can easily exfiltrate your secret.

And that's just an easy case - really if it has any network access at all it can come up with a clever way to route a request through the network such that the key comes back somewhere in the request. If you scan for it inbound too, the machine can obfuscate it.

Our agents are trained to be so intensely helpful and they have such intricate knowledge of how things work that they will do some incredibly clever tricks to do what you ask them to do.

show 1 reply