Source · DiggingBeagle record
Context Privilege Escalation paper
Each support, contradiction or context label applies to a cited Claim, not to a whole Case.
Source record
Claim-level citations (4)
- supportsContext privilege escalation let repository instructions blind an AI code reviewer: The CPE researchers report that a malicious AGENTS.override.md caused Codex review to approve manipulated vulnerable code, while a control review without the override detected the command injection.
SRC-CPE-SEP01
- supportsContext privilege escalation let repository instructions blind an AI code reviewer: Researchers evaluated 12 real agent harnesses and reported consequences including manipulated tool invocation, denial of service, remote code execution and full agent compromise.
SRC-CPE-SEP01
- supportsContext privilege escalation let repository instructions blind an AI code reviewer: In the Codex demonstration, attacker-controlled repository instructions caused Codex to approve vulnerable code that it rejected in a control run without the malicious override.
SRC-CPE-SEP01
- supportsContext privilege escalation let repository instructions blind an AI code reviewer: The paper defines MessageRole Context Privilege Escalation and Cross-Scope Context Privilege Escalation as two classes of context-assembly attack.
SRC-CPE-SEP01
Cite this record
DiggingBeagle. “Context Privilege Escalation paper.” https://diggingbeagle.com/sources/context-privilege-escalation-paper/
Citation guidance