← Back to feed
AI SecurityEmerging1 sourceAug 16, 2025 · 19:20via Embrace The Red (AI agent security)

Amp Code: Invisible Prompt Injection Fixed by Sourcegraph

Brief

In this post we will look at Amp, a coding agent from Sourcegraph. The other day we discussed how invisible instructions impact Google Jules .

Turns out that many client applications are vulnerable to these kinds of attacks when they use models that support invisible instructions, like Claude.

Invisible Unicode Tag Characters Interpreted as Instructions

We have talked about hidden prompt injections quite a bit in the past , and so I’m keeping this short.

Read more on Embrace The Red (AI agent security)