Russian-speaking cybercriminals use SpaceX’s Cursor AI coding assistant to help carry out intrusions into seven companies, according to data reviewed by Reuters and reports from cybersecurity firms Gambit Security and CloudSek. The breaches include at least one confirmed victim: a Belgian chemical company, with the other affected firms described as additional organizations hit earlier this year.
The reporting focuses on how commercial AI tools can be repurposed for cybercrime. While the outlet coverage is aligned on the core claim—that Cursor is used in the hacking process and that seven companies are involved—the framing varies slightly. Reuters emphasizes its reviewed evidence and the number of incidents identified. Other coverage presents the event as part of a broader pattern of criminals adopting AI-enabled tooling to improve intrusion capabilities.
Across sources, the key point is that the attackers rely on Cursor as part of their workflow rather than limiting activity to traditional hacking methods. The reports do not indicate that SpaceX or Cursor is responsible for the breaches, and the specifics of how each compromise proceeds are not fully detailed in the excerpts provided.