NHacker Next
  • new
  • past
  • show
  • ask
  • show
  • jobs
  • submit
Atlassian Rovo Exfiltrates Data, Bypassing Controls (promptarmor.com)
formerly_proven 11 minutes ago [-]
> Rovo's URL retrieval tool is insecure: there are no protections against opening a URL that has been dynamically created by the agent. Here, Rovo is manipulated to append sensitive data to an attacker's URL. When Rovo calls the insecure tool to open the URL, the attacker's site logs the request, including the appended sensitive data.
khanan 7 minutes ago [-]
Atlassian has gone from a trusted enterprise-partner to a complete shit-show in just 18 months. This surprises nobody. There will be classes taught in how to fuck up a good business and Atlassian will be the prime example.

Regards, /someone who migrated 3500 users from Atlassians products recently due to their "cloud only"-bullshit.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
Rendered at 18:34:37 GMT+0000 (Coordinated Universal Time) with Vercel.