GhostApproval: Symlink Flaw Tricks 6 AI Coding Assistants Into Writing to SSH Keys — Anthropic Disputes, Then Ships Its Own Fix
Wiz Research discloses a category-level vulnerability in AI coding assistants where malicious symlinks bypass approval dialogs to write to sensitive system files. Five of six vendors fixed or acknowledged. Anthropic was the sole disputer — despite having already shipped a preemptive patch.