threat-intel Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent Google removed three AI agent workflows from its ADK Python repository after a public GitHub issue allowed a malicious bot to trigger a privileged code-fixing agent, leading to potential code execution and credential exposure. The vulnerability stemmed from a misconfigured workflow that granted excessive permissions to… The Hacker News · Aug 4, 2026 High botcredential exposuregit