Cursor Issue Paves Way for Credential-Stealing Attacks
ID: a6823c7d-2028-5f6b-9e93-966ed8731898
STIX ID: report--a6823c7d-2028-5f6b-9e93-966ed8731898
Feed Name: Dark Reading
Date Published: 2025-11-17
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Knostic researchers demonstrated that Cursor's AI developer environment fails to perform integrity checks on MCPs and certain extensions, allowing a malicious MCP server to inject JavaScript into Cursor's embedded browser, replace login pages to harvest credentials, and run commands that can compromise a user's workstation; the report warns this is an inherent design risk across AI-assisted development tools and recommends thoroughly vetting MCPs/extensions and avoiding auto-run functionality.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
