Attackers can inject indirect prompts in normal-looking repositories to trick Claude Code into spawning a reverse shell.
"Did I just unlock a cheat code or did everyone know about this??" reads the overtext in a TikTok that recently went viral. Personally, I think the TikToker who posted the video unlocked a cheat code ...