Tag

#AI coding tools

7 stories taggedAI coding tools.

Illustration: a modern developer workstation at dusk, two large monitors glowing with abstract code editor windows
AI Security

Two Clicks to Own a Developer's Machine: The Cursor AI Flaw You Should Know About

Researchers found they could smuggle a malicious installation command into the most popular AI code editor by hiding it inside what looked like a routine code-review link.

4 min read
Illustration: a dimly lit server rack with green and amber LEDs reflecting off glossy black metal
Vulnerabilities

Popular AI Coding Tool Cursor Runs Malicious Files Automatically, Researcher Warns

A security firm reported the flaw seven months ago and got silence. Now it's gone public.

3 min read
Illustration: On the screen, a software approval dialog box glows in blue and white
AI Security

GhostApproval: Six AI Coding Tools Were Tricking Developers Into Approving Dangerous Actions

A new attack pattern shows that the 'human approval' step built into AI coding assistants can be fed false information by the very tool it is supposed to oversee.

4 min read
Illustration: A dark wooden desk seen from slightly above
AI Security

AI Coding Assistants Fooled by Decades-Old File Trick to Attack Developer Machines

A technique as old as Unix itself let researchers plant hidden traps inside innocent-looking code projects, then watch AI tools quietly rewrite the wrong files while developers clicked 'approve'.

3 min read
Illustration for the story: An AI Coding Tool Built Into Millions of Developer Setups Had a Flaw That Could Hand Hackers
AI Security

An AI Coding Tool Built Into Millions of Developer Setups Had a Flaw That Could Hand Hackers Your Cloud Keys

A security hole in Amazon's AI coding assistant let criminals steal cloud credentials just by getting a developer to open a poisoned folder. It's patched, but the attack method is spreading.

3 min read
Illustration: A modern open-plan corporate office at dusk, empty of people
AI Security

The Automation Nobody Reviewed: How AI-Built Workflows Are Quietly Leaking Enterprise Data

A developer asked an AI to speed up a document approval process. It worked perfectly and exposed sensitive HR files to hundreds of colleagues. This is happening across businesses right now.

3 min read
Illustration: A glowing terminal window open on a dark developer workstation
AI Security

Cursor IDE's Sandbox Cracked by Prompt Injection — No User Interaction Required

Two logic flaws in Cursor's command execution sandbox let attackers escape the isolation layer and run code on the underlying OS. Patches landed in April. The researchers say Cursor isn't alone.

3 min read
© 2026 Threat Vectr