Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets
Thionne_WTZ · x · 2026-09-01
Threat actors associated with Aurora ransomware were observed using SpaceX's AI-powered coding assistant Cursor to plan and execute attacks. The agent handled exploitation tasks including network scanning, privilege checks, NTLM relay attempts, and certificate attacks against 10 targets. The findings are based on exposed infrastructure leaking months of activity.
More from coding & agent
- DIY visual diff tool using GitHub Artifacts and pure JavaScript to save costs — zeeg · 2026-09-01
- Dev shares a dirt-cheap approach to visual diffs — zeeg · 2026-09-01
- Grok Bot automates Shopify updates and supplier coordination — billyjhowell · 2026-09-01
- Grok Bot automates lost deal analysis by mining call and email threads — lennysan · 2026-09-01
- Design pattern: immutable agent artifact revisions behind a stable review URL — RocketSeven · 2026-09-01
- Building a long-term memory benchmark for agents: what to add? — True_Mongoose_7073 · 2026-09-01