Topic · DiggingBeagle record
Agent-enabled software supply-chain attack
AI agents or AI-assisted operators target package repositories, source-control review or software distribution paths.
- Topic kind
- pattern
Definition & limits
The relevant evidence includes who can publish, who can approve, how artifacts are reviewed, and whether agent-generated changes can cross into trusted distribution channels.
Examples
- AISI's malicious pull-request attempt.
- Anthropic's Mythos 5 incident involving malicious PyPI packages.
Research using this topic (7)
Cite this record
DiggingBeagle. “Agent-enabled software supply-chain attack.” https://diggingbeagle.com/concepts/agent-enabled-software-supply-chain-attack/
Citation guidance