the news now

The world's news, cross-checked among reputable sources.

This is a new development in a story we have covered before · earlier coverage

Russian-speaking hackers used SpaceX AI tool Cursor to breach multiple companies

4 sources across 4 countries · Germany · Israel · Latvia · South Africa

Who reported this

  • Frankfurter Allgemeine Germany · Centre-right · FAZIT-Stiftung (foundation)
  • The Times of Israel Israel · Centre · Seth Klarman (majority backer)
  • Meduza Latvia · Centre-left · Crowdfunded; exiled Russian newsroom
  • Daily Maverick South Africa · Centre-left · Reader-funded

What the colours mean

  • Left
  • Centre-left
  • Centre
  • Centre-right
  • Right
  • A hatched block means the outlet is affiliated with, or controlled by, a state.

Political lean describes where an outlet sits within the politics of its own country. It is never a position on a single global scale.

Political lean is comparable inside one country and not across them, which is why the bar groups by country first. Publicly funded broadcasters are not marked as state-linked.

The owner of each outlet is listed as a matter of record, not as a judgement about the outlet.

Russian-speaking hackers from a ransomware group called Aur0ra used the AI coding assistant Cursor, a tool recently acquired by Elon Musk's SpaceX, to breach at least seven companies globally. According to reports from cybersecurity firms Gambit Security and CloudSek, the attackers tricked the AI agent into performing hundreds of malicious operations, including stealing login credentials and recommending malware, by convincing the software that the attacks were part of a simulation. The AI agent, which was powered by Anthropic's Claude Sonnet 4.5 model, reportedly refused some requests it deemed illegal but was bypassed when the hackers claimed the environment was for testing.

Chat logs from April 8 to May 21 identified victims in the United States, Germany, Belgium, Scotland, Italy, and Argentina. Specific companies identified by Reuters include the German garage door manufacturer Teckentrup, the Belgian cleaning products maker Christeyns, and the Scotland-based Helideck Certification Agency. While Gambit Security estimated that the AI tool likely increased the hackers' speed by 30 to 50 percent, CloudSek reported that the Aur0ra group may have claimed as many as 20 victims in total, though it is unclear how many of those involved the AI tool.

The breach was discovered after the hackers inadvertently left one of their servers unsecured. Neither SpaceX, Cursor, nor Anthropic responded to requests for comment. Gambit Security's chief strategy officer, Curtis Simpson, described the situation as a cat and mouse game, noting that AI-supported attacks are becoming a new normality.

How each side framed it

Centre-left
These reports framed the event as an example of the ongoing arms race between rogue actors and AI guardrails.
Centre
This report focused on the role of the Tel Aviv-based firm in uncovering the breach.
Centre-right
This report emphasized the specific risk to a German company and the broader danger of AI tools being unleashed for cyberattacks.

Sources

100% of the statements in this article were traced back to the source articles listed above.