logo

Cursor-Opus agent snuffs out startup’s production database

ID: 9e1747d0-d9a9-5b3f-908a-9864ccb5ae5d

STIX ID: report--9e1747d0-d9a9-5b3f-908a-9864ccb5ae5d

Feed Name: The Register (Security)

Threat Score
30/100

Date Published: 2026-04-27

Date Updated: 2026-05-06

...
...

Jer (Jeremy) Crane of PocketOS reported that an AI coding agent (Cursor using Anthropic's Opus) inadvertently deleted the company's production database and associated volume-level backups via a fully permissioned Railway API token in about nine seconds; Railway restored the data within an hour and patched a legacy endpoint. The post-mortem highlights a chain of failures — overly-broad API tokens, backups stored on the same production volume, and delete semantics without delayed confirmation — and frames the event as a wider warning about the risks of agentic AI interacting with insufficiently constrained infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.