When researchers disclosed GitLost, a critical prompt injection vulnerability within GitHub’s new Agentic Workflows on July 7, the headlines made it sound like a bug. But the real story is about agent permissions, access and authorization. GitLost exposed a much broader security problem that extends far beyond GitHub: AI agents are operating with legitimate access […] The post GitLost isn’t a bug but it is your problem appeared first on Wing Security .