News

Over 3,200 Cursor Users Infected by Malicious Credential-Stealing npm Packages

  • EditorDavid--Slashdot.org
  • published date: 2025-05-11 22:26:00 UTC

Cybersecurity researchers have flagged three malicious npm packages that target the macOS version of AI-powered code-editing tool Cursor, reports The Hacker News: "Disguised as developer tools offering 'the cheapest Cursor API,' these packages steal user cr…

"Disguised as developer tools offering 'the cheapest Cursor API,' these packages steal user credentials, fetch an encrypted payload from threat actor-controlled infrastructure, overwrite Cursor's mai… [+1059 chars]