How the attack works

The attack relies on a project with a specially crafted folder structure. If a developer opens such a directory using the standard Open Folder function, a malicious command can be executed automatically on the device. The threat affects both Windows and macOS systems.

The threat affects both Windows and macOS systems.
SlowMist TI Alert. X

According to researchers, several users of the AI-powered editor Cursor have already fallen victim to this campaign, although the exact extent of the damage remains unknown.

The founder of SlowMist, known under the pseudonym Cos, has already shared details of the incident with Cursor’s security team. At the time of writing, Cursor has not publicly commented on the reported vulnerability.

Based on the reminder from slowmist's owner  @evilcos  , here are some security tips for Vibe Coding
SlowMist's founder, who goes by the pseudonym Cos, has already reported the incident to the platform's security team. X

Security recommendations

Web3 researcher DeFi Teddy advised users to operate vibe coding environments on separate devices, isolated from those used to store cryptocurrencies. In September, security specialists at Oasis Security identified a similar vulnerability in the software, which allowed attackers to inject malicious code, take control of the development environment, and steal API tokens without any explicit user action.

Web3 researcher Teddy recommended that users use separate devices for vibe coding and cryptocurrency storage
Web3  researcher Teddy recommended that users use separate devices for vibe coding and cryptocurrency storage. X

About Cursor

Cursor is an IDE based on Visual Studio Code with built-in AI tools. The project integrates popular chatbots such as ChatGPT and Claude. The platform is widely used among developers: according to various media reports, around one million users rely on Cursor, collectively generating more than one billion lines of code per day. In May, the company behind Cursor, Anysphere, raised $900 million at a valuation of $9 billion