← Back to feed
Authors & BlogsEmerging1 sourceSep 4, 2026 · 10:35via Schneier on Security

AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks

Brief

We cannot forget that AI coding agents are not yet trustworthy :

Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies. Of the 8,265 llms. txt and llms-full. txt files they found (many sites hosted both an llms. txt and an llms-full. txt file), 120 of them, each on a different site, pointed to one or more code packages or domain names that weren’t registered.

To test what happens when an AI agent processes such files, the researchers registered a handful of the unclaimed names and hosted packages that caused any machine executing them to reach out to their server. Within an hour, the researchers received a phone-home response from a Fortune 500 company. Over time, they got a few dozen more, some from more Fortune 500 companies and others from startups.

Read more on Schneier on Security