
Malicious npm Package Exploits Cursor IDE for macOS
DevelopmentSecurity
A malicious npm package has hijacked the Cursor IDE development environment for macOS, enabling the theft of certificates, the implantation of backdoors, and control over the development environment. This npm package was designed to exploit specific vulnerabilities in Cursor IDE, allowing attackers to take control of developers' systems. The impacts include compromising development projects and the potential spread of malware through developed applications.