
Aurora Ransomware Hackers Use Cursor AI Agent for Hands-On Exploitation and ESXi Attacks
Aurora ransomware operators have been observed using Cursor Agent, powered by Claude Sonnet, to support hands-on intrusion activity across ten victim organizations, while deploying a purpose-built Linux encryptor designed to disrupt VMware ESXi environments. The findings show how ransomware affiliates are integrating agentic AI into established post-compromise workflows rather than relying on it as a […]
The post Aurora Ransomware Hackers Use Cursor AI Agent for Hands-On Exploitation and ESXi Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.