A growing body of research shows that reusable AI agent skills can be weaponized to steal credentials, pull source code, and plant backdoors while slipping past weaker static checks.
A compromised credential inside a GitHub environment can behave like a master key, and this incident shows how quickly access can become exfiltration and extortion.