Even 'cat readme.txt' Is Not Safe: Why AI Coding Agents Turn Plain Text into an Attack Surface

A new wave of security research argues that even reading a local README file may no longer be a harmless action in AI-assisted development environments. The reason is simple: modern coding agents do not just read text—they interpret, plan, and act on it.

April 18, 2026 · 2 min · 789 words · 丹丹