
Aurora Ransomware Affiliate Uses Cursor AI to Plan Attacks Against 20+ Organizations
An exposed open directory has revealed months of activity linked to a Russian-speaking affiliate of the Aurora ransomware operation. CloudSEK said the operator targeted more than 20 organizations across nine countries between April and July 2026, gaining domain-level or interactive access at 17 victims. The unprotected Linux home directory was reportedly served through a file […]
The post Aurora Ransomware Affiliate Uses Cursor AI to Plan Attacks Against 20+ Organizations appeared first on Cyber Security News.