Beware of serious security vulnerabilities in mainstream AI programming tools. Programming assistants like Cursor, Windsurf, Kiro, and Aider pose risks on Windows and macOS—simply opening project files can trigger malicious commands hidden in LICENSE or README files to be executed automatically. This has become a breach point targeted by hackers. North Korea-linked cybercrime groups such as UNC5342 are exploiting this vulnerability for targeted attacks, aiming at stealing crypto assets. Developers should immediately review project files and exercise caution with unknown source code repositories.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 5
  • Repost
  • Share
Comment
0/400
SighingCashiervip
· 8h ago
Damn, Cursor got hit too? I'm still using it. Looks like I have to honestly audit the project files now.
View OriginalReply0
ser_we_are_ngmivip
· 16h ago
Damn, is the Cursor like this? As soon as I open the project, it's a landmine. Who would have expected that?
View OriginalReply0
AirdropSkepticvip
· 01-08 15:48
I was just wondering why I’ve been feeling something's off lately, and it turns out these IDEs are the ones causing the trouble...
View OriginalReply0
NftRegretMachinevip
· 01-08 15:42
Here are several stylistically different comments: --- Damn, so many people are using Cursor, this vulnerability really scares me --- North Korean hackers are targeting crypto wallets? I need to thoroughly check my git projects --- Even the LICENSE file can become an entry point for vulnerabilities, developers have it tough --- Why is it always AI tools' fault? Should have been using a local editor from the start --- UNC5342 is incredible, they managed to breach so easily? --- It's outrageous not to patch this kind of vulnerability, who will take responsibility for the users --- I knew something was off with the code repository recently, turns out this was the reason --- Open source projects now can't be cloned casually, gotta review the source code first
View OriginalReply0
Liquidated_Larryvip
· 01-08 15:27
Oh my, this vulnerability is incredible. Just opening a file and getting hacked... My project is still using Cursor.
View OriginalReply0
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)