Saturday, December 6, 2025
Crypto Marketcap
No Result
View All Result
3K Crypto
  • Home
  • Bitcoin
  • Crypto Updates
    • General
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • NFT
  • Blockchain
  • Regulations
  • Metaverse
  • Web3
  • DeFi
  • Scam Alert
  • Analysis
3K Crypto
  • Home
  • Bitcoin
  • Crypto Updates
    • General
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • NFT
  • Blockchain
  • Regulations
  • Metaverse
  • Web3
  • DeFi
  • Scam Alert
  • Analysis
No Result
View All Result
3K Crypto
No Result
View All Result

Malicious Repos Can Trigger Auto Code Execution in Cursor

September 13, 2025
in Altcoin
Reading Time: 3 mins read
0 0
A A
0
Home Altcoin
Share on FacebookShare on Twitter


Loved this text?

Share it with your mates!

Oasis Safety has recognized a vulnerability in Cursor, an AI-based code editor, that enables hidden code to run as quickly as a person opens a undertaking folder with none motion or warning.

The difficulty comes from a default setting in Cursor. A security function known as Workspace Belief is disabled by default when this system is first put in. Because of this, sure job recordsdata can start executing instructions instantly when a developer opens a folder.

If a person provides a dangerous job to a undertaking and shares it on-line, these instructions will run as quickly as one other individual opens the folder in Cursor.

Do you know?

Need to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer movies each week!

What’s AVAX? (Avalanche Community Defined With Animations)

What is AVAX? (Avalanche Network Explained With Animations)
What is AVAX? (Avalanche Network Explained With Animations)

Cursor is constructed on prime of Visible Studio Code, which additionally consists of the Workspace Belief function. This device is designed to guard builders from malicious code by blocking automated duties from unknown sources.

The vulnerability exploits the .vscode/duties.json file, which might comprise directions to run duties as quickly as a folder is opened. Attackers can place these directions in a shared undertaking.

In response to Erez Schwartz from Oasis Safety, this conduct can result in stolen credentials, modified recordsdata, or system entry. It additionally will increase the possibilities of provide chain assaults, the place malicious code spreads by instruments or tasks utilized by many individuals.

To remain protected, customers ought to take a couple of steps. First, they need to allow Workspace Belief in Cursor to cease unknown duties from working routinely. Second, it’s suggested to open untrusted tasks utilizing a special code editor, particularly the .vscode folder, earlier than utilizing Cursor.

On August 28, Anthropic warned that unhealthy actors are utilizing its chatbot Claude to assist perform on-line crimes. How? Learn the total story.



Source link

Tags: AutoCodeCursorExecutionMaliciousReposTrigger
Previous Post

Stock Exchange Expert Highlights What Will Spark An XRP Price Explosion

Next Post

California Bill to Regulate AI Chatbots Nears Decision

Related Posts

Bitcoin’s Death Cross Is Here: Why This Time, AI Changes Everything (A 2019 Playbook, Supercharged)
Altcoin

Bitcoin’s Death Cross Is Here: Why This Time, AI Changes Everything (A 2019 Playbook, Supercharged)

December 6, 2025
Hotstuff Labs launches Hotstuff, a DeFi native Layer 1 connecting On-Chain Trading with Global Fiat Rails
Altcoin

Hotstuff Labs launches Hotstuff, a DeFi native Layer 1 connecting On-Chain Trading with Global Fiat Rails

December 5, 2025
Ogvio Introduces Instant Money Delivery and No Hidden Fees
Altcoin

Ogvio Introduces Instant Money Delivery and No Hidden Fees

December 5, 2025
Zashi 2.4.9 Is Faster! – Electric Coin Company
Altcoin

Zashi 2.4.9 Is Faster! – Electric Coin Company

December 4, 2025
Are seed phrases a thing of the past
Altcoin

Are seed phrases a thing of the past

December 4, 2025
TrueNorth Raises M to Build Domain-Specific AI for Finance
Altcoin

TrueNorth Raises $3M to Build Domain-Specific AI for Finance

December 5, 2025
Next Post
California Bill to Regulate AI Chatbots Nears Decision

California Bill to Regulate AI Chatbots Nears Decision

TopnotchCrypto Cloud Mining Offers BTC Holders High Passive Income

TopnotchCrypto Cloud Mining Offers BTC Holders High Passive Income

Ethereum Validator Slashing Puts Cardano’s Resilience In Focus – Here’s Why

Ethereum Validator Slashing Puts Cardano’s Resilience In Focus – Here’s Why

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Facebook Twitter Instagram Youtube
3K Crypto

Stay updated with 3K Crypto – your go-to destination for the latest cryptocurrency news, in-depth market analysis, expert opinions, and educational resources. Empowering you to navigate the world of digital currencies and blockchain technology.

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3
No Result
View All Result

SITEMAP

  • About Us
  • Advertise With Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2025 3K Crypto.
3K Crypto is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin(BTC)$89,904.000.76%
  • ethereumEthereum(ETH)$3,051.84-0.51%
  • tetherTether(USDT)$1.00-0.02%
  • binancecoinBNB(BNB)$894.561.29%
  • rippleXRP(XRP)$2.04-1.15%
  • usd-coinUSDC(USDC)$1.00-0.01%
  • solanaSolana(SOL)$133.27-0.35%
  • tronTRON(TRX)$0.2884171.05%
  • staked-etherLido Staked Ether(STETH)$3,049.75-0.54%
  • dogecoinDogecoin(DOGE)$0.140047-0.74%
No Result
View All Result
  • Home
  • Bitcoin
  • Crypto Updates
    • General
    • Altcoin
    • Ethereum
    • Crypto Exchanges
  • NFT
  • Blockchain
  • Regulations
  • Metaverse
  • Web3
  • DeFi
  • Scam Alert
  • Analysis
Crypto Marketcap

Copyright © 2025 3K Crypto.
3K Crypto is not responsible for the content of external sites.