logo

AI supply chain attacks don’t even require malware…just post poisoned documentation

ID: 3e74d0e8-209a-5f56-80c6-b4b62f60d5bb

STIX ID: report--3e74d0e8-209a-5f56-80c6-b4b62f60d5bb

Feed Name: The Register (Security)

Threat Score
55/100

Date Published: 2026-03-25

Date Updated: 2026-04-26

Author: Thomas Claburn

...
...

The article reports that Context Hub — a service delivering API documentation to coding agents — can be abused as a software supply-chain vector by merging malicious documentation via GitHub PRs; a proof-of-concept shows agents routinely incorporate fake dependencies from poisoned docs into requirements and code, exposing a widespread indirect prompt-injection and content-supply vulnerability that requires stronger content sanitization or restricted agent network/data access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.