daily cyber × ai intelligence

index

tagged

[cursor]

9 editions · 9 items

September 10, 2026

One Exploit Kit, Four Espionage Crews: BlueMoon Turns Chrome's Patch Gap Into a Shared Weapon

BlueMoon exploit kit chains Chrome and Windows zero-days within days of patch publication, with four suspected China-linked espionage groups weaponizing the same toolkit on US and Southeast Asian targets from late August onward. Cisco Secure Firewall Management Center CVEs are under active exploitation by three distinct post-compromise clusters including a ransomware operator and Sandworm-attributed activity. DeepSeek AI agent harness contained an authentication bypass allowing remote agents to escalate privileges via a single shell command; Anthropic declined to provide pre-release model access to UK authorities, triggering debate over AI protectionism. Stealer logs now monetize replayable AI-service tokens from compromised systems, with over 500 valid Google, Anthropic, and Cursor credentials found in a single 7 GB dump.

September 3, 2026

  • A malicious .git config is enough to get CLI coding agents to run attacker code. Manifold Security disclosed eight flaws across seven command-line AI coding agents — including Claude, Codex and Cursor — where a repository's own Git configuration names a command the agent then executes on the developer's machine, as the user, outside the agent's sandbox and with no approval prompt. Four were still unpatched at publication; the only prerequisite is cloning a hostile repo (The Hacker News). · AI-Enabled Attacks & Agent Security

in Ten Hours, Fifty Techniques: AI Agents Ran the Whole Ransomware Intrusion

August 28, 2026

  • Aurora ransomware operators used the Cursor coding agent live during intrusions. Researchers recovered weeks of operator interaction logs from attacker infrastructure showing AI assistance for internal enumeration, Active Directory reconnaissance, privilege discovery, VPN/proxy configuration, credential hunting and general troubleshooting across seven victim companies (Reuters). · AI & Model Security

in Australia Charges Two Over the TeamPCP Supply-Chain Spree

July 9, 2026

  • GhostApproval — Wiz found symlink flaws in six AI coding assistants (Amazon Q Developer, Claude Code, Augment, Cursor, Google Antigravity, Windsurf) that let a booby-trapped repo turn an approved edit to a harmless-looking file into a write to a sensitive one, yielding RCE via a misleading confirmation dialog. Several vendors have shipped urgent patches. The Register, The Hacker News · AI & Model Security
  • Sophos telemetry shows benign AI coding agents (Claude Code, Cursor, Codex) routinely tripping behavioral EDR rules written for human intruders — decrypting browser credentials, enumerating the Windows credential store, etc. A real detection-engineering problem: agent activity and attacker activity look identical to the engine. The Hacker News · AI & Model Security

in A 15-Year-Old Linux Kernel Bug Hands Root on Every Distro