Skip to main content

SNOW-26.1: Skill Namespace Shadowing

๐Ÿ”ด High ยท ServiceNow Supply Chain

Detects duplicate tool/skill labels across scoped applications that can confuse the AI agent's tool selection. Attackers can publish malicious skills with names mimicking legitimate ones to hijack agent tool routing.

Detailsโ€‹

FieldValue
Rule IDSNOW-26.1
SeverityHigh
CategoryServiceNow Supply Chain
Platformsservicenow

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to SNOW-26.1.

See Alsoโ€‹