Thursday, April 2, 2026
Catatonic Times
No Result
View All Result
  • Home
  • Crypto Updates
  • Bitcoin
  • Ethereum
  • Altcoin
  • Blockchain
  • NFT
  • Regulations
  • Analysis
  • Web3
  • More
    • Metaverse
    • Crypto Exchanges
    • DeFi
    • Scam Alert
  • Home
  • Crypto Updates
  • Bitcoin
  • Ethereum
  • Altcoin
  • Blockchain
  • NFT
  • Regulations
  • Analysis
  • Web3
  • More
    • Metaverse
    • Crypto Exchanges
    • DeFi
    • Scam Alert
No Result
View All Result
Catatonic Times
No Result
View All Result

Malicious Repos Can Trigger Auto Code Execution in Cursor

by Catatonic Times
September 13, 2025
in Altcoin
Reading Time: 3 mins read
0 0
A A
0
Home Altcoin
Share on FacebookShare on Twitter


Loved this text?

Share it with your mates!

Oasis Safety has recognized a vulnerability in Cursor, an AI-based code editor, that enables hidden code to run as quickly as a person opens a undertaking folder with none motion or warning.

The difficulty comes from a default setting in Cursor. A security function referred to as Workspace Belief is disabled by default when this system is first put in. Because of this, sure activity information can start executing instructions instantly when a developer opens a folder.

If a person provides a dangerous activity to a undertaking and shares it on-line, these instructions will run as quickly as one other individual opens the folder in Cursor.

Do you know?

Need to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer movies each week!

What’s Aurora in Crypto? NEAR Protocol Token Defined (ANIMATED)

What is Aurora in Crypto? NEAR Protocol Token Explained (ANIMATED)
What is Aurora in Crypto? NEAR Protocol Token Explained (ANIMATED)

Cursor is constructed on high of Visible Studio Code, which additionally consists of the Workspace Belief function. This software is designed to guard builders from malicious code by blocking automated duties from unknown sources.

The vulnerability exploits the .vscode/duties.json file, which may comprise directions to run duties as quickly as a folder is opened. Attackers can place these directions in a shared undertaking.

Based on Erez Schwartz from Oasis Safety, this habits can result in stolen credentials, modified information, or system entry. It additionally will increase the probabilities of provide chain assaults, the place malicious code spreads by instruments or tasks utilized by many individuals.

To remain protected, customers ought to take a couple of steps. First, they need to allow Workspace Belief in Cursor to cease unknown duties from working robotically. Second, it’s suggested to open untrusted tasks utilizing a distinct code editor, particularly the .vscode folder, earlier than utilizing Cursor.

On August 28, Anthropic warned that dangerous actors are utilizing its chatbot Claude to assist perform on-line crimes. How? Learn the total story.



Source link

Tags: AutoCODECursorExecutionMaliciousRepostrigger
Previous Post

Stock Exchange Expert Highlights What Will Spark An XRP Price Explosion

Next Post

California Bill to Regulate AI Chatbots Nears Decision

Related Posts

Institutional Investors Sell 4,000,000 in Bitcoin and Crypto Assets in One Week: CoinShares
Altcoin

Institutional Investors Sell $414,000,000 in Bitcoin and Crypto Assets in One Week: CoinShares

March 30, 2026
Staking, Wrapping, and Airdrops: The SEC’s Epic Interpretation Shaping Tomorrow’s Crypto Landscape
Altcoin

Staking, Wrapping, and Airdrops: The SEC’s Epic Interpretation Shaping Tomorrow’s Crypto Landscape

March 27, 2026
Coinbase Adds Little-Known Crypto Asset to Listing Roadmap for Spot Trading
Altcoin

Coinbase Adds Little-Known Crypto Asset to Listing Roadmap for Spot Trading

March 25, 2026
Tether Announces 4,000,000,000 Independent Audit With Big Four Accounting Firm
Altcoin

Tether Announces $184,000,000,000 Independent Audit With Big Four Accounting Firm

March 25, 2026
‘Updating the Plumbing of the Financial System’: BlackRock CEO Larry Fink Says Tokenization Could Expand Access to Markets
Altcoin

‘Updating the Plumbing of the Financial System’: BlackRock CEO Larry Fink Says Tokenization Could Expand Access to Markets

March 24, 2026
Insurance Giant Aon Partners With Coinbase and Paxos in Trialing Use of Stablecoins for Premium Payments
Altcoin

Insurance Giant Aon Partners With Coinbase and Paxos in Trialing Use of Stablecoins for Premium Payments

March 11, 2026
Next Post
California Bill to Regulate AI Chatbots Nears Decision

California Bill to Regulate AI Chatbots Nears Decision

Mid-Sized Bitcoin Holders Break Records With 65K BTC Weekly Accumulation

Mid-Sized Bitcoin Holders Break Records With 65K BTC Weekly Accumulation

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Catatonic Times

Stay ahead in the cryptocurrency world with Catatonic Times. Get real-time updates, expert analyses, and in-depth blockchain news tailored for investors, enthusiasts, and innovators.

Categories

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

Latest Updates

  • Analyst Forecasts Fall To $600 If This Happens
  • Will The XRP Price Have Better Luck In The Second Quarter Of The Year? Analyst Shares Forecast
  • Charles Schwab-Backed EDX Markets Applies for National Trust Bank Charter With OCC  – Crypto News Bitcoin News
  • About Us
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact Us

Copyright © 2024 Catatonic Times.
Catatonic Times is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Crypto Updates
  • Bitcoin
  • Ethereum
  • Altcoin
  • Blockchain
  • NFT
  • Regulations
  • Analysis
  • Web3
  • More
    • Metaverse
    • Crypto Exchanges
    • DeFi
    • Scam Alert

Copyright © 2024 Catatonic Times.
Catatonic Times is not responsible for the content of external sites.