Russian-speaking operators linked to the emerging Aur0ra ransomware group used Cursor's AI coding agent, reportedly powered by Claude Sonnet, to assist post-compromise activity against at least seven—and potentially 10—organizations from April to May 2026. Gambit Security recovered 28 attacker-agent conversations from an internet-exposed Aur0ra server showing requests for reconnaissance, credential theft and password cracking, privilege discovery, host and network scanning, account takeover, tool deployment, certificate attacks, network-access setup, and exploitation of vulnerable systems.
The operators supplied existing credentials or network access, repeatedly refined prompts, and reportedly bypassed some AI safeguards by restarting chats and presenting malicious activity as authorized security testing. Gambit estimated the assistance accelerated operations by 30% to 50%; activity affected organizations across multiple countries and sectors, although the available evidence does not prove Cursor was used in every compromise or that each incident led to extortion. Aur0ra also introduced a Linux ransomware variant targeting VMware ESXi that encrypts virtual-machine files while keeping the hypervisor bootable to display ransom demands.

TTPs, infrastructure, and targeting history in one profile.
6 events from the most recent confirmed update back to the earliest known activity.
Cursor became part of SpaceX following an acquisition process that had started earlier in the year.
Aur0ra-associated, Russian-speaking operators used Cursor Agent, powered by Claude Sonnet, after obtaining network access or credentials to support ransomware intrusions. The activity began on April 8 and included reconnaissance, credential and privilege discovery, host scanning, exploitation attempts, certificate attacks, and deployment of tools including NetExec, Nmap, Certipy, VPN clients, and proxychains.
Researchers reported a separate cluster attributed to Aurora with medium confidence that targeted eight organizations across several countries. The cluster reportedly used exposed SQL Server xp_cmdshell for lateral movement, GodPotato for SYSTEM elevation, DCSync, and s5cmd to exfiltrate data to a self-hosted S3-compatible endpoint.
Louisiana-based Bayou Title appeared on Aur0ra's data-leak site, indicating the group sought extortion leverage against the organization.
Aur0ra deployed a new Linux ransomware variant targeting VMware ESXi environments. The variant encrypts virtual-machine files while leaving the hypervisor bootable to display ransom demands.
Reuters identified Christeyns, Teckentrup, Helideck Certification Agency, an Argentine pharmaceutical distributor, and an Italian manufacturer as apparent victims in Aur0ra's Cursor-related activity. Gambit Security's exposed-server review covered chat logs from April 8 through May 21 and CloudSek said the group had claimed at least 20 victims overall.
Vulnerabilities, threat actors, malware, products, organizations, breaches, and observables Mallory has linked to this story. Indicator values are masked here and available in full in the app.
Indicator values are masked on this page. View all 28 in Mallory Domains, IPs, hashes, and URLs are exportable to your SIEM.
See this adversary's TTPs, infrastructure, and targeting history, correlated against your exposure.
4 references tracked. Mallory keeps watching after this page renders.
cyberveille.ch
Open sourcecysecurity.news
Open sourcescworld.com
Open sourceteiss.co.uk
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.