Critical Vulnerability in AI Coding Tools Threatens Crypto Developers
Blockchain security firm SlowMist has uncovered a critical flaw in AI-powered coding tools that could compromise developer systems through routine operations. The vulnerability affects mainstream integrated development environments (IDEs), putting crypto developers at particular risk due to their frequent handling of digital assets and sensitive credentials.
The exploit triggers automatically when developers interact with malicious projects, executing system commands on both Windows and macOS without requiring additional user interaction. SlowMist's threat intelligence team reports several developers have already been compromised through this vector.
Cursor IDE users appear especially vulnerable to what cybersecurity firm HiddenLayer first identified as the 'CopyPasta License Attack' in September. The discovery comes as AI coding assistants become increasingly prevalent in blockchain development workflows.