logoalt Hacker News

rpodrazalast Thursday at 7:00 PM2 repliesview on HN

Maybe I'm paranoid, but allowing any coding agent or tool to execute commands within terminal that is not sandboxed somehow will be prone to attacks like that


Replies

internet101010last Thursday at 7:04 PM

It's a double edged sword. With terminal sure, but not allowing interaction in Microsoft applications like Power BI (especially with no ability to copy and paste) renders Copilot completely useless.

show 1 reply
hultnerlast Thursday at 7:07 PM

Isn’t the problem that it’s supposed to not execute commands without strict approval but the shell stdout redirection in combination with process substitution is bypassing this.