New UK AISI report: GPT-6 Astra reached malicious payload delivery in 29.2% of simulated CTF runs. In its supply chain attacks, it considered fake CVE reports, deceptive PR notes, and triggering a publisher workflow from an unmerged PR branch.
socket.dev/blog/astra-s...
socket.dev
New AISI Report Details How GPT-6 Astra Turned CTF Challenges Into Supply Chain Attacks
GPT-6 Astra tried to plant malicious code in simulated open source projects using fake GitHub accounts and deceptive PRs during an assigned CTF challenge.