⤷ Title: Developer Alert: “CursorJack” Technique Weaponizes Deeplinks to Hijack Cursor IDE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Mar 2026 08:03:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #Cursor IDE #CursorJack #cybersecurity #developer security #infosec #MCP Deeplinks #Proofpoint #supply chain attack #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Mar 2026 08:03:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #Cursor IDE #CursorJack #cybersecurity #developer security #infosec #MCP Deeplinks #Proofpoint #supply chain attack #threat intelligence
Daily CyberSecurity
Developer Alert: "CursorJack" Technique Weaponizes Deeplinks to Hijack Cursor IDE
Proofpoint details 'CursorJack', a novel exploit using malicious MCP deeplinks in the Cursor AI editor to execute arbitrary code on developer machines.
⤷ Title: The Gemini Trap: How a Fake AI Token Checker Stealthily Hijacks Developer Workstations
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:52:30 +0000
════════════════════════
⌗ Tags: #Malware #Anthropic #Contagious Interview #Cursor AI #Cybersecurity 2026 #Developer Security #gemini_ai_checker #North Korea #NPM Malware #OtterCookie #supply chain attack #Windsurf
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 07:52:30 +0000
════════════════════════
⌗ Tags: #Malware #Anthropic #Contagious Interview #Cursor AI #Cybersecurity 2026 #Developer Security #gemini_ai_checker #North Korea #NPM Malware #OtterCookie #supply chain attack #Windsurf
Penetration Testing Tools
The Gemini Trap: How a Fake AI Token Checker Stealthily Hijacks Developer Workstations
An ostensibly innocuous package for validating Google Gemini tokens manifested within the npm repository, yet beneath its rudimentary
⤷ Title: North Korean Hackers Pivot to AI: New npm Malware Targets Cursor, Claude, and Gemini Tokens
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 02:00:41 +0000
════════════════════════
⌗ Tags: #Malware #AI Tools #API Key Theft #Claude Code #Contagious Interview #Cursor AI #Cyberespionage #developer security #infosec #North Korea #npm malware #OtterCookie #WindSurf
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 02:00:41 +0000
════════════════════════
⌗ Tags: #Malware #AI Tools #API Key Theft #Claude Code #Contagious Interview #Cursor AI #Cyberespionage #developer security #infosec #North Korea #npm malware #OtterCookie #WindSurf
Daily CyberSecurity
North Korean Hackers Pivot to AI: New npm Malware Targets Cursor, Claude, and Gemini Tokens
North Korean hackers are now targeting AI tools like Cursor and Claude. The OtterCookie malware steals API keys and conversation logs. Is your dev environment safe?
⤷ Title: The $600 Billion Orbit: SpaceX and xAI Join Forces with Cursor to Command the Future of Coding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 09:48:29 +0000
════════════════════════
⌗ Tags: #Technology #AI Coding #artificial intelligence #Colossus Supercomputer #Cursor #Elon Musk #Software Engineering #SpaceX #SpaceX IPO #Tech Mergers 2026 #Vibe Coding #xAI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 09:48:29 +0000
════════════════════════
⌗ Tags: #Technology #AI Coding #artificial intelligence #Colossus Supercomputer #Cursor #Elon Musk #Software Engineering #SpaceX #SpaceX IPO #Tech Mergers 2026 #Vibe Coding #xAI
Daily CyberSecurity
The $600 Billion Orbit: SpaceX and xAI Join Forces with Cursor to Command the Future of Coding
SpaceX secures a $600 billion option to acquire Cursor AI. Discover how the "Vibe Coding" pioneer is leveraging xAI’s Colossus supercomputer to build the world's most powerful models.
⤷ Title: The AI Multiplier: How North Korea’s “HexagonalRodent” Turned ChatGPT into a $12M Crypto Heist
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 07:52:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ChatGPT #Cryptocurrency Theft #Cursor AI #Cybercrime 2026 #Expel #Famous Chollima #HexagonalRodent #malware analysis #North Korea #Social Engineering #Web3 Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 07:52:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ChatGPT #Cryptocurrency Theft #Cursor AI #Cybercrime 2026 #Expel #Famous Chollima #HexagonalRodent #malware analysis #North Korea #Social Engineering #Web3 Security
Penetration Testing Tools
The AI Multiplier: How North Korea’s "HexagonalRodent" Turned ChatGPT into a $12M Crypto Heist
Inexperienced North Korean cyber operatives have successfully exfiltrated millions of dollars in cryptocurrency over a span of several
⤷ Title: The Malware Factory: Unmasking the 108-Package North Korean Siege on npm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 06:30:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 #Blockchain C2 #CI/CD #Cursor AI #developer security #DPRK #infosec #malware #North Korea #npm #Panther Threat Research #Polymarket #supply chain attack #WindSurf
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 06:30:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2026 #Blockchain C2 #CI/CD #Cursor AI #developer security #DPRK #infosec #malware #North Korea #npm #Panther Threat Research #Polymarket #supply chain attack #WindSurf
Daily CyberSecurity
The Malware Factory: Unmasking the 108-Package North Korean Siege on npm
Panther Research exposes a massive 2026 DPRK npm campaign using blockchain dead-drops to steal crypto keys and AI secrets. Secure your CI/CD pipelines now.
⤷ Title: Cursor AI IDE vulnerability allows code execution via hidden Git hooks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 09:01:56 +0000
════════════════════════
⌗ Tags: #Security #Artificial Intelligence #AI #Cursor AI #Cybersecurity #GitHib #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 09:01:56 +0000
════════════════════════
⌗ Tags: #Security #Artificial Intelligence #AI #Cursor AI #Cybersecurity #GitHib #Vulnerability
Hackread
Cursor AI IDE vulnerability allows code execution via hidden Git hooks
Novee researchers find high-severity CVE-2026-26268 flaw in Cursor AI, allowing hackers to run malicious code when developers clone repositories.
⤷ Title: Cursor AI Agent Wipes PocketOS Database and Backups in 9 Seconds
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 21:31:34 +0000
════════════════════════
⌗ Tags: #Security #Artificial Intelligence #AI #Claude Opus #Cursor AI #Cybersecurity #Jer Crane #PocketOS #Railway #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 21:31:34 +0000
════════════════════════
⌗ Tags: #Security #Artificial Intelligence #AI #Claude Opus #Cursor AI #Cybersecurity #Jer Crane #PocketOS #Railway #Vulnerability
Hackread
Cursor AI Agent Wipes PocketOS Database and Backups in 9 Seconds
PocketOS founder says Cursor AI agent deleted its production database in 9 seconds after misusing a root API token, exposing major Railway security flaws
⤷ Title: The Sleeper in Your IDE: Unmasking the 73-Extension “GlassWorm” Espionage Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 08:01:51 +0000
════════════════════════
⌗ Tags: #Malware #.node binaries #Cursor AI #cyber_espionage #GlassWorm #IDE Security #infosec #Malware Analysis #Open VSX #Sleeper Extensions #Socket #VS Code #WindSurf
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 08:01:51 +0000
════════════════════════
⌗ Tags: #Malware #.node binaries #Cursor AI #cyber_espionage #GlassWorm #IDE Security #infosec #Malware Analysis #Open VSX #Sleeper Extensions #Socket #VS Code #WindSurf
Daily CyberSecurity
The Sleeper in Your IDE: Unmasking the 73-Extension "GlassWorm" Espionage Campaign
Socket uncovers GlassWorm: a 73-extension sleeper campaign on Open VSX targeting VS Code and Cursor. Stealthy .node binaries turn trusted tools into malware.
⤷ Title: AI’s Open Secret: Why Your Cursor Extensions Can Silently Siphon Your API Keys
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 07:11:58 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Code Editor #API keys #Credential Theft #Cursor AI #cybersecurity #Developer Tools #Extension Security #infosec #macOS #security vulnerability #SQLite #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 07:11:58 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Code Editor #API keys #Credential Theft #Cursor AI #cybersecurity #Developer Tools #Extension Security #infosec #macOS #security vulnerability #SQLite #windows
Daily CyberSecurity
AI’s Open Secret: Why Your Cursor Extensions Can Silently Siphon Your API Keys
Cursor AI editor found storing API keys and tokens in an unprotected SQLite database, allowing extensions to steal credentials silently. CVSS 8.2. No patch yet.