CopyPasta exploit targets Cursor, risks Coinbase codebases!!

  • HiddenLayer disclosed a new “CopyPasta License Attack” that hides instructions in common project files to trick AI coding assistants.
  • The exploit targets tools like Cursor, which Coinbase said in August was used widely by its engineers.
  • The attack embeds hidden markdown comments in files such as LICENSE.txt so the model will preserve and replicate the instructions across files.
  • Coinbase CEO Brian Armstrong said about 40% of daily code is AI-generated and aims for more than 50% by October.
  • Researchers warn organizations to scan for hidden comments and treat all untrusted inputs to large language models as potentially malicious.

Cybersecurity firm HiddenLayer disclosed Thursday that attackers can use a method called a “CopyPasta License Attack” to insert hidden instructions into common developer files and trick AI coding assistants into spreading them across a codebase. The attack relies on AI tools treating certain files as authoritative and preserving their contents when modifying code.

- Advertisement -

The disclosure showed the technique primarily affects tools like Cursor, which Coinbase said in August was among the AI tools used by its engineers. Brian Armstrong wrote on Twitter that “~40% of daily code written at Coinbase is AI-generated. I want to get it to >50% by October.” He added AI work is concentrated in user interfaces and non-sensitive backends, with “complex and system-critical systems” adopting more slowly.

HiddenLayer’s report described embedding malicious payloads inside hidden markdown comments in files such as LICENSE.txt so the assistant treats those comments as license instructions and preserves them when editing. Hidden markdown comments are pieces of text in files that are not normally visible in rendered documentation; prompt injection is when input manipulates an AI model into following hidden instructions.

Researchers demonstrated how Cursor could be tricked into adding backdoors, siphoning sensitive data, or running resource-draining commands. HiddenLayer said, “Injected code could stage a backdoor, silently exfiltrate sensitive data or manipulate critical files.” The payloads can evade standard Malware detection because they appear as harmless documentation.

The technique broadens earlier worm concepts such as Morris II; IBM has written about those prior email-agent attacks here. HiddenLayer warned, “All untrusted data entering LLM contexts should be treated as potentially malicious.”

- Advertisement -

Security teams now urge scanning files for hidden comments and manually reviewing all AI-generated changes. (CoinDesk has reached out to Coinbase for comment.)

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Tesla Shares Slip After USPTO Blocks Cybercab, Robotaxi Name

Tesla shares dipped after the United States Patent and Trademark Office denied trademark applications...

Elon Musk’s xAI Raises $20B; Valuation Still Undisclosed Now

xAI raised $20 billion in an upsized Series E, surpassing a prior $15 billion...

Riot sells 2,201 BTC for $200M to fund AI data center build.

Riot Platforms sold 2,201 BTC across November and December, raising nearly $200 million in...

Aave v4 and Lido v3 Spark Major DeFi Upgrades, 2026 Outlook!

Major DeFi protocols plan substantive upgrades in early 2026.Aave is preparing a new architecture...

Hyperliquid Unlock Dilutes HYPE Holders by $331M amid $268M+

Hyperliquid unlocked 12,457,813 HYPE tokens from a founding vesting allocation, increasing circulating supply by...
- Advertisement -

Must Read

TOP 12 Day Trading Crypto Books For Beginners

Day trading cryptocurrencies has become an increasingly popular financial activity, offering the potential for huge returns to those who understand the market's complexities and...
Bitcoin (BTC) $ 93,641.00 0.34%
Ethereum (ETH) $ 3,291.57 1.92%
XRP (XRP) $ 2.30 2.13%
Bittensor (TAO) $ 293.54 9.55%
Polkadot (DOT) $ 2.23 1.14%
Cardano (ADA) $ 0.418988 0.59%
Chainlink (LINK) $ 14.02 0.66%
Hyperliquid (HYPE) $ 28.22 6.41%
Monero (XMR) $ 442.07 1.36%
Hedera (HBAR) $ 0.128796 2.66%
Toncoin (TON) $ 1.90 0.00%