Post by Simon Willison on X
Simon Willison@simonw
XThis one is pretty nasty - it tricks Antigravity into stealing AWS credentials from a .env file (working around .gitignore restrictions using cat) and then leaks them to a webhooks debugging site that's included in the Antigravity browser agent's default allow-list
2.2K likes49 repliesPosted Nov 25, 2025