← Back to KHAO

Claude ·

Security biz Adversa AI argues users of AI systems need clearer warnings

2 min read

Compiled by KHAO Editorial — aggregated from 4 outlets. See llms.txt for citation guidance.

◎ Multiple-sources

Close-up of a dangling Ethernet plug with a blurred cable on a white background.

How explicit does the maker of a footgun need to be about the product's potential to shoot you in the foot?

Key facts

Summary

Security biz Adversa AI argues users of AI tools need clearer warnings. That's the question security firm Adversa AI is asking with the disclosure of a one-click remote code execution attack via an MCP server in Claude Code, Gemini CLI, Cursor CLI, and Copilot CLI. The TrustFall proof-of-concept attack demonstrates how a cloned code repository can include two JSON files (.mcp.json and.claude/settings.json) that open the door to an attacker-controlled Model Context Protocol (MCP) server. C++ survey finds AI use rising, though trust is in short supply.

#Claude #Cursor #Gemini