Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
Autonomous AI agent scans 460 targets, exposes hacking infrastructure ...
Singapore’s BFSI Technology Leaders to Convene at the 38th Editi...
Why APAC Teams Need to Stop Worshipping CVSS Scores
North Korean group linked to multiple open-source supply chain package...
How converging physical and digital identity systems can reduce risk a...
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      Why APAC Teams Need to Stop Worshipping CVSS Scores

      Why APAC Teams Need to Stop Worshipping CVSS Scores

      Monday, August 3, 2026, 9:00 AM Asia/Singapore | Features, Sponsored, Tips
    • Featured

      Automated credential abuse and phishing in APAC

      Automated credential abuse and phishing in APAC

      Thursday, July 30, 2026, 11:37 AM Asia/Singapore | Features
    • Featured

      OpenAI autonomous agent escapes sandbox to hack Hugging Face

      OpenAI autonomous agent escapes sandbox to hack Hugging Face

      Friday, July 24, 2026, 11:02 AM Asia/Singapore | Features, News
  • Opinions
  • Tips
  • Whitepapers
  • AWARDS 2026
  • Directory
  • E-Learning

Select Page

News

Just when we thought AI-powered IDEs were invaluable…

By CybersecAsia editors | Friday, December 12, 2025, 10:55 AM Asia/Singapore

Just when we thought AI-powered IDEs were invaluable…

Researchers have just found more than 30 vulnerabilities in integrated development tools powered by AI.

Between 7 and 8 December 2025, security researchers released reports uncovering more than 30 vulnerabilities in AI-powered integrated development environments (IDEs) that could enable attackers to steal data and execute code remotely through chained exploits.

The set of vulnerabilities, dubbed “IDEsaster” by Ari Marzouk of MaccariTA, impacts tools such as Cursor, Windsurf, GitHub Copilot, Zed.dev, Roo Code, Kiro.dev, JetBrains Junie, and Cline — with 24 earning CVE numbers.​

To override large language model safeguards, auto-approved agent tools, and standard IDE functions, attacks can combine prompt injection to breach security boundaries. Context hijacking occurs via hidden characters in pasted URLs or text, poisoned Model Context Protocol (MCP) servers, or tainted external inputs parsed by legitimate tools. This differs from prior chains — by weaponizing established IDE features, such as file reads/writes, rather than solely abusing agent configs.​

Key examples include:

  • Reading sensitive files (e.g., CVE-2025-49150 in Cursor) and leaking data via JSON schemas fetched from attacker domains (CVEs: 2025-49150, –53097, –58335)
  • Altering settings like .vscode/settings.json to run malicious executables (CVEs: 2025-53773 in Copilot, –54130 in Cursor, –53536 in Roo, -55012 in Zed)
  • Modifying workspace configs (*.code-workspace) for code execution without restarts (CVEs: 2025-64660 in Copilot, –61590 in Cursor, –58372 in Roo), exploiting default auto-approvals.​ These rely on AI agents’ trust in workspace files, amplifying risks in autonomous setups.​

Related flaws and risks
Concurrent discoveries involve OpenAI Codex CLI’s command injection (CVE-2025-61260) via tampered configs, Google Antigravity’s prompt injections for credential theft and backdoors, and PromptPwnd targeting AI agents in CI/CD pipelines. Agentic AI expands developer machine attack surfaces by blurring user instructions and malicious external content.​

Users of AI-powered IDEs need to restrict use to trusted projects, scrutinize MCP servers and added sources for hidden payloads, and monitor data flows, according to experts. Developers should enforce least privilege on LLM tools, sandbox commands, harden prompts; test for traversals, leaks, and injections under the principles of “secure-by-default”, “secure-by-design”, and “with AI in mind” to ensure developed products can withstand evolving AI abuses.

Marzouk has stressed integrating base IDE threats into AI threat models.

Share:

PreviousSecuring the AI ecosystem: The next frontier for APAC enterprises
NextSingtel Receives Frost & Sullivan’s 2025 Singapore Company of the Year Recognition in Cybersecurity Services Leadership

Related Posts

Falcon Fund by CrowdStrike

Falcon Fund by CrowdStrike

Wednesday, August 28, 2019

Endpoint detection and response: What SMEs really need

Endpoint detection and response: What SMEs really need

Wednesday, October 28, 2020

When can we bid passwords a glad goodbye?

When can we bid passwords a glad goodbye?

Thursday, April 22, 2021

Urgent cybersecurity threats linked to quantum computing every IT decision-maker should know

Urgent cybersecurity threats linked to quantum computing every IT decision-maker should know

Wednesday, October 22, 2025

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • Critical Security Threatsand the Need for ZTNA: How evolving cyberattacks demand a Zero Trust approach

    Critical Security Threatsand the Need for ZTNA: How evolving cyberattacks demand a Zero Trust approach

    Cyber threats have become more frequent and sophisticated, targeting organizations of all sizes across all …Download Whitepaper
  • Zero Trust Made Simple: Why it matters and how to get started

    Zero Trust Made Simple: Why it matters and how to get started

    Data breaches and cyberattacks are no longer limited to large, high-profile organizations.Download Whitepaper
  • Cloud Secure Edge: Remote access, better security

    Cloud Secure Edge: Remote access, better security

    ​SonicWall Cloud Secure Edge™ is a modern, cloud-native Security Service Edge (SSE) solution that addresses …Download Whitepaper
  • Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • How a Vietnamese D2C retailer built its own secure digital infrastructure

    How a Vietnamese D2C retailer built its own secure digital infrastructure

    Would your organization build your own digital infrastructure – including AI governance and cybersecurity – …Read more
  • Cyber protection for medical clinics in Singapore

    Cyber protection for medical clinics in Singapore

    As Singapore’s healthcare sector becomes increasingly digital and interconnected, clinics are facing heightened cyber risks, …Read more
  • India’s WazirX strengthens governance and digital asset security

    India’s WazirX strengthens governance and digital asset security

    Revamping its custody infrastructure using multi‑party computation tools has improved operational resilience and institutional‑grade safeguardsRead more
  • Bangladesh LGED modernizes communication while addressing data security concerns

    Bangladesh LGED modernizes communication while addressing data security concerns

    To meet emerging data localization/privacy regulations, the government engineering agency deploys a secure, unified digital …Read more

Bottom sidebar

Other News

  • Singapore’s BFSI Technology Leaders to Convene at the 38th Edition BFSI IT Summit Singapore 2026

    Monday, August 3, 2026
    Summit to Bring Together More …Read More »
  • Robo.ai Appoints Former INTERPOL President H.E. Dr. Ahmed Naser Al-Raisi as Chairman of Its Subsidiary Alif Holding

    Thursday, July 30, 2026
    Headquartered in Abu Dhabi, the …Read More »
  • TPIsoftware Partners with Juxta to Bring Advanced, Satellite-Free Positioning Tech into Security Sectors

    Wednesday, July 29, 2026
    TAIPEI, July 29, 2026 /PRNewswire/ …Read More »
  • ST Engineering iDirect Secures Strategic Defense Wins in Asia and Europe

    Tuesday, July 28, 2026
    HERNDON, Va., July 28, 2026 …Read More »
  • Newgen Software Named a Major Player in IDC MarketScape for National Civilian Government AI-Enabled Case Management 2026

    Tuesday, July 28, 2026
    NEW DELHI, July 28, 2026 …Read More »
  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 CybersecAsia All Rights Reserved.