Close Menu
KumbhCoinorg
    What's Hot

    Bisnis Tambak Udang, Peluang Besar Di Tengah Tren Ekspor » Dashofinsight

    July 1, 2026

    Shardul Thakur breaks silence on England stint, questions Gautam Gambhir’s tactics

    July 1, 2026

    World Cup 2026 Round of 32: Netherlands & Germany Eliminated, Brazil and France Advance | Football news at 1000Goals.com: Football Betting, News, and More

    July 1, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Bisnis Tambak Udang, Peluang Besar Di Tengah Tren Ekspor » Dashofinsight
    • Shardul Thakur breaks silence on England stint, questions Gautam Gambhir’s tactics
    • World Cup 2026 Round of 32: Netherlands & Germany Eliminated, Brazil and France Advance | Football news at 1000Goals.com: Football Betting, News, and More
    • A Spin Around the NHL with the Latest Trade and Free Agent Rumors
    • Refunds: Hidden Tricks – BBC
    • Anchorage Digital And Binance Launch Off-Exchange Settlement For Institutional Crypto Trading
    • Village People frontman Victor Willis dies aged 74
    • ICC T20I rankings: Abhishek Sharma’s year-long reign as World No. 1 comes to an end | Cricket News
    Facebook X (Twitter) Instagram
    KumbhCoinorg
    Wednesday, July 1
    • Home
    • Crypto News
      • Bitcoin & Altcoins
      • Blockchain Trends
      • Forex News
    • Kumbh Mela
    • Entertainment
      • Celebrity Gossip
      • Movie & TV Reviews
      • Music Industry News
    • Market News
      • Global Economy Insights
      • Real Estate Trends
      • Stock Market Updates
    • Education
      • Career Development
      • Online Learning
      • Study Tips
    • Airdrop News
      • Ico News
    • Sports
      • Cricket
      • Football
      • hockey
    KumbhCoinorg
    Home»Crypto News»Blockchain Trends»Malicious Repos Can Trigger Auto Code Execution in Cursor
    Blockchain Trends

    Malicious Repos Can Trigger Auto Code Execution in Cursor

    kumbhorgBy kumbhorgSeptember 14, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Malicious Repos Can Trigger Auto Code Execution in Cursor
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    Enjoyed this article?

    Share it with your friends!

    Oasis Security has identified a vulnerability in Cursor, an AI-based code editor, that allows hidden code to run as soon as a user opens a project folder without any action or warning.

    The issue comes from a default setting in Cursor. A safety feature called Workspace Trust is disabled by default when the program is first installed. As a result, certain task files can begin executing commands immediately when a developer opens a folder.

    If a user adds a harmful task to a project and shares it online, those commands will run as soon as another person opens the folder in Cursor.

    What is Algorand? ALGO Coin Explained With Animations

    Did you know?

    Want to get smarter & wealthier with crypto?

    Subscribe – We publish new crypto explainer videos every week!

    What is Algorand? ALGO Coin Explained With Animations

    What is Algorand? ALGO Coin Explained With Animations
    What is Algorand? ALGO Coin Explained With Animations

    Cursor is built on top of Visual Studio Code, which also includes the Workspace Trust feature. This tool is designed to protect developers from malicious code by blocking automatic tasks from unknown sources.

    The vulnerability exploits the .vscode/tasks.json file, which can contain instructions to run tasks as soon as a folder is opened. Attackers can place these instructions in a shared project.

    According to Erez Schwartz from Oasis Security, this behavior can lead to stolen credentials, changed files, or system access. It also increases the chances of supply chain attacks, where malicious code spreads through tools or projects used by many people.

    To stay safe, users should take a few steps. First, they should enable Workspace Trust in Cursor to stop unknown tasks from running automatically. Second, it is advised to open untrusted projects using a different code editor, especially the .vscode folder, before using Cursor.

    On August 28, Anthropic warned that bad actors are using its chatbot Claude to help carry out online crimes. How? Read the full story.


    Auto Code Cursor Execution Malicious Repos Trigger
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleGBP/USD Weekly Forecast: Looming Fed Cut Bets to Boost Pound
    Next Article RIO Upgrade Goes Live on Polygon Testnet: POL Price Prediction For September 2025
    kumbhorg
    • Website
    • Tumblr

    Related Posts

    Education

    Crack the code, skip the rank: IIT-K’s new cyber degree wants hackers, not toppers

    By kumbhorgJune 11, 2026
    Movie & TV Reviews

    AMC Turns “Interview With a Vampire” Into the Delicious, Malicious “The Vampire Lestat”

    By kumbhorgJune 6, 2026
    Forex News

    Middle East risks may trigger series of rate hikes

    By kumbhorgMay 26, 2026
    Sports

    KKR crack GT code to keep playoff hopes breathing

    By kumbhorgMay 16, 2026
    Blockchain Trends

    Polygon’s $250M Move Into Stablecoin Payments Explained

    By kumbhorgMay 7, 2026
    Education

    NEET UG 2026 in 2 Days: Things to carry, dress code — last minute tips for exam day

    By kumbhorgMay 2, 2026
    Add A Comment

    Comments are closed.

    Don't Miss

    Bisnis Tambak Udang, Peluang Besar Di Tengah Tren Ekspor » Dashofinsight

    By kumbhorgJuly 1, 2026

    Bisnis tambak udang kini semakin dilirik sebagai salah satu peluang usaha yang menjanjikan di sektor…

    Shardul Thakur breaks silence on England stint, questions Gautam Gambhir’s tactics

    July 1, 2026

    World Cup 2026 Round of 32: Netherlands & Germany Eliminated, Brazil and France Advance | Football news at 1000Goals.com: Football Betting, News, and More

    July 1, 2026

    A Spin Around the NHL with the Latest Trade and Free Agent Rumors

    July 1, 2026
    Top Posts

    Satwik-Chirag storm into China Masters final with straight-game win over Malaysia | Badminton News

    September 21, 2025176 Views

    SaucerSwap SAUCE Crypto Breaks Key Resistance Amid Nvidia-Hedera Deal

    July 15, 202548 Views

    Unlocking Your Potential with Mubite: The Future of Crypto Prop Trading

    September 17, 202533 Views

    Stablecoins 2025 Exchange Reserves: Insights into DeFi Trends

    September 8, 202532 Views
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    About Us

    Welcome to KumbhCoin!
    At KumbhCoin, we strive to create a unique blend of cultural and technological news for a diverse audience. Our platform bridges the spiritual significance of the Kumbh Mela with the dynamic world of cryptocurrency and general news.

    Facebook X (Twitter) Pinterest WhatsApp
    Our Picks

    Bisnis Tambak Udang, Peluang Besar Di Tengah Tren Ekspor » Dashofinsight

    July 1, 2026

    Shardul Thakur breaks silence on England stint, questions Gautam Gambhir’s tactics

    July 1, 2026

    World Cup 2026 Round of 32: Netherlands & Germany Eliminated, Brazil and France Advance | Football news at 1000Goals.com: Football Betting, News, and More

    July 1, 2026
    Most Popular

    7 things to know before the bell

    January 22, 20250 Views

    Reeves optimistic despite surprise rise in UK borrowing

    January 22, 20250 Views

    Barnes & Noble stock soars 20% as it explores a sale Barnes & Noble stock soars 20% as it explores a sale

    January 22, 20250 Views
    • Terms and Conditions
    • Privacy Policy
    • Contact Us
    • About Us
    © 2026 Kumbhcoin. Designed by Webwizards7.

    Type above and press Enter to search. Press Esc to cancel.