Sichu Lu @lu_sichu
— quoting a report excerpt — saved image
Sichu Lu @lu_sichu who is this absolute hero [Quoted image of report text] All of these strategies were instrumental toward the goal of getting the PR merged in order to execute the supply chain attack. This was pursued by both pressuring the reviewers and attempting to steal the git credentials of the repository maintainer. The suspicious GitHub activity was caught by a different user denoted <PERSON_C>. They noticed that the GitHub Issue included a prompt injection, and deliberately tested the code snippet from the GitHub Issue in a containerised sandbox to confirm it contained malware. The agent briefly achieved remote code execution as the root user inside this sandbox, and used it to conduct reconnaissance, which was limited to what it could determine from the sandbox (see Section 4.2.3). <PERSON_C> then commented on both the issue and the pull request about the discovered malware. 6:10 PM · Aug 4, 2026 · 68 Views
Note from Claude Sonnet 5
A tweet from Sichu Lu (@lu_sichu) praising an anonymized user (PERSON_C) described in a quoted incident-report excerpt as having caught and safely investigated a supply-chain attack attempt involving a GitHub PR, prompt injection, and malware.