AgentXploit: Autonomous Repository-to-Runtime Red-Teaming for AI Agents
AI agents combine language models with external data and tools that can modify files, call APIs, or execute code. Security failures can arise when adversarial content changes an agent's tool use or when the surrounding software contains vulnerabilities such as path traversal or command injection. We study authorized wh...