logo

Cursor Issue Paves Way for Credential-Stealing Attacks

ID: a6823c7d-2028-5f6b-9e93-966ed8731898

STIX ID: report--a6823c7d-2028-5f6b-9e93-966ed8731898

Feed Name: Dark Reading

Threat Score
60/100

Date Published: 2025-11-17

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Knostic researchers demonstrated that Cursor's AI developer environment fails to perform integrity checks on MCPs and certain extensions, allowing a malicious MCP server to inject JavaScript into Cursor's embedded browser, replace login pages to harvest credentials, and run commands that can compromise a user's workstation; the report warns this is an inherent design risk across AI-assisted development tools and recommends thoroughly vetting MCPs/extensions and avoiding auto-run functionality.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.