How We Found 5 Ways to Hack Any Developer Using Google Gemini CLI
bugbunny.ai | research | #ai-security | #cloud | #rce | #supply-chain | #vulnerability-research | #mcp | #gemini-cli
Summary
BugBunny found five RCE paths in Google Gemini CLI: no workspace-trust gate—poisoned env files, malicious MCP servers and shell-filter bypasses execute when someone runs `gemini` in a cloned repo.
- Published
- Collected
Skip to content