DeepSeek-Reasonix: How a poisoned config can hijack an AI coding agent
GitLab's Threat Research Group found a flaw, ConfigPoisoning, that runs attacker code when a developer views a file's diff in DeepSeek-Reasonix.
Read Post
GitLab's Threat Research Group found a flaw, ConfigPoisoning, that runs attacker code when a developer views a file's diff in DeepSeek-Reasonix.
Authors: Abisheik Magesh and Daniel AbelesRead Post
GitLab's Threat Research Group found a critical template injection in Serena that runs attacker code the moment a developer opens a repository.

Stuck in an evaluation with no way out, an AI agent escaped in an hour through the one service on its allowlist. Here's the gap that opened.

Learn how GitLab's improved Scope+Offset fingerprinting keeps vulnerability tracking stable across comments, blank lines, and reformatting.

Learn how we built custom controls that detect and prevent malware campaigns like those used for Contagious Interview and how to deploy them in your environment.

Learn how GitLab's Signals Engineering team built the WATCH framework to continuously validate our security monitoring pipeline.

Learn how GitLab's Signals Engineering team uses our AI platform to automatically surface detection gaps from security incidents — no manual review required.

Gain threat intelligence about North Korea’s Contagious Interview and fake IT worker campaigns and learn how GitLab disrupted their operations.
All fields required