logo

2-Click Cursor Exploit Enables Dev Environment Takeover

ID: c6f33159-ad66-5127-8e21-a7aed5ce1a99

STIX ID: report--c6f33159-ad66-5127-8e21-a7aed5ce1a99

Feed Name: CosmicBytez Labs

Threat Score
85/100

Date Published: 2026-07-16

Date Updated: 2026-07-16

...
...

Adversa AI disclosed "DeepJack," a high-impact two-click attack against Cursor IDE (vulnerable 3.9.8) that abuses double-encoded deeplinks and a deceptive single-line confirmation dialog to silently install a malicious Model Context Protocol (MCP) server running with full user privileges. The report details attacker capabilities (access to repos, credentials, persistent backdoors, lateral movement), notes multiple related Cursor vulnerabilities disclosed in July 2026, lists patch status, and offers mitigation guidance (inspect deeplinks, audit MCP servers, allowlist, behavioral monitoring).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.