BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

CopyPasta exploit targets Cursor, risks Coinbase codebases!!

  • HiddenLayer disclosed a new “CopyPasta License Attack” that hides instructions in common project files to trick AI coding assistants.
  • The exploit targets tools like Cursor, which Coinbase said in August was used widely by its engineers.
  • The attack embeds hidden markdown comments in files such as LICENSE.txt so the model will preserve and replicate the instructions across files.
  • Coinbase CEO Brian Armstrong said about 40% of daily code is AI-generated and aims for more than 50% by October.
  • Researchers warn organizations to scan for hidden comments and treat all untrusted inputs to large language models as potentially malicious.

Cybersecurity firm HiddenLayer disclosed Thursday that attackers can use a method called a “CopyPasta License Attack” to insert hidden instructions into common developer files and trick AI coding assistants into spreading them across a codebase. The attack relies on AI tools treating certain files as authoritative and preserving their contents when modifying code.

- Advertisement -

The disclosure showed the technique primarily affects tools like Cursor, which Coinbase said in August was among the AI tools used by its engineers. Brian Armstrong wrote on Twitter that “~40% of daily code written at Coinbase is AI-generated. I want to get it to >50% by October.” He added AI work is concentrated in user interfaces and non-sensitive backends, with “complex and system-critical systems” adopting more slowly.

HiddenLayer’s report described embedding malicious payloads inside hidden markdown comments in files such as LICENSE.txt so the assistant treats those comments as license instructions and preserves them when editing. Hidden markdown comments are pieces of text in files that are not normally visible in rendered documentation; prompt injection is when input manipulates an AI model into following hidden instructions.

Researchers demonstrated how Cursor could be tricked into adding backdoors, siphoning sensitive data, or running resource-draining commands. HiddenLayer said, “Injected code could stage a backdoor, silently exfiltrate sensitive data or manipulate critical files.” The payloads can evade standard Malware detection because they appear as harmless documentation.

The technique broadens earlier worm concepts such as Morris II; IBM has written about those prior email-agent attacks here. HiddenLayer warned, “All untrusted data entering LLM contexts should be treated as potentially malicious.”

- Advertisement -

Security teams now urge scanning files for hidden comments and manually reviewing all AI-generated changes. (CoinDesk has reached out to Coinbase for comment.)

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

Hedge Fund Split Capital Shuts Down, CEO Joins Thiel-Backed Plasma

Split Capital, a top-performing crypto hedge fund, is closing after delivering over 100% returns.Founder...

BlackRock Bitcoin ETF Flaunts $182 Million Bullish Purchase

BlackRock's iShares Bitcoin Trust (IBIT) made a significant purchase of $181.9 million in BTC...

Bitcoin Whale Moves $20M to Binance Amid Price Slump

A large Bitcoin holder transferred 300 BTC, worth over $20 million, to a Binance...

Anthropic, SpaceX Could Drive $135B+ IPO Boom

Anthropic has tripled its annualized revenue to over $30 billion as it moves toward...

Quantum Threat to Bitcoin a Social, Not Technical, Hurdle: Grayscale

The primary threat quantum computers pose to Bitcoin is social, not technical, revolving around...

Must Read

Are Cryptocurrency Securities?

TL;DR - Cryptocurrencies are not typically considered securities, as they are decentralized digital assets that operate independently of any central authority or government. However,...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading