Coinbase’s preferred AI coding tool can be hijacked by new virus

Cybersecurity firm HiddenLayer has warned of a new virus that can inject malicious prompts into Cursor — an AI coding tool developers use worldwide.
The artificial intelligence coding tool favored by the likes of crypto exchange Coinbase has a vulnerability allowing hackers to silently inject malware and “spread itself across an organization,” says a cybersecurity firm.
HiddenLayer reported on Thursday that a “CopyPasta License Attack” can hide malicious instructions in common developer files to “introduce deliberate vulnerabilities into codebases that would otherwise be secure.”
“By convincing the underlying model that our payload is actually an important license file that must be included as a comment in every file that is edited by the agent, we can quickly distribute the prompt injection across entire codebases with minimal effort,” it added.
Source: Cointelegraph →Related News
- Feb 24, 2026
Ethereum Foundation starts staking ETH as client diversity concerns persist
- Feb 24, 2026
‘Bitcoin scarcity is dead’: Crypto executives push back on viral claim
- Feb 24, 2026
Solo Bitcoin miner bags over $200K block reward using rented hashrate
- Feb 24, 2026
Vitalik sells 17K ETH in one month after earmarking $45M for privacy
- Feb 24, 2026
Stablecoin stagnation, tariffs a headwind for Bitcoin prices, analysts say
