🤖 NomShub: Weaponizing Cursor's Remote Tunnel Through Indirect Prompt Injection and Sandbox Breakout
NomShub is a critical vulnerability chain in the Cursor AI code editor where a malicious repository can silently hijack a developer's machine, combining indirect prompt injection, a sandbox escape via shell builtins, and Cursor's built-in remote tunnel to give attackers persistent, undetected shell access triggered simply by opening a repo.
https://www.straiker.ai/blog/nomshub-cursor-remote-tunneling-sandbox-breakout
#AI
Post #1406
452

- ❤ 1
- 👍 1
- 🔥 1