News

Claude Code Can Be Manipulated via CLAUDE.md to Run SQL Injection Attacks

  • Deeba Ahmed--HackRead
  • published date: 2026-04-09 13:50:29 UTC

Claude Code can be manipulated via CLAUDE.md to bypass safeguards and execute SQL injection attacks, enabling credential theft, says LayerX.

LayerX researchers have discovered how to bypass Claude Codes safety rules using the CLAUDE.md file. This exploit allows anyone to automate SQL injection attacks and steal user credentials without wr… [+3140 chars]