NomShub: Cursor AI Vulnerability Chain Could Hand Attackers Full Control of Developer Machines
A chained attack dubbed NomShub could allow adversaries to silently hijack developer machines through malicious repositories opened in Cursor AI, requiring no user interaction beyond a single click.