SlowMist IDE Security Alert Flags Hidden Folder Attacks in Vibe Coding
Blockchain security firm SlowMist has issued a critical alert targeting developers engaged in 'Vibe Coding' or using mainstream integrated development environments (IDEs). The warning highlights a stealthy attack vector where merely opening a malicious project folder can execute system-level commands—no code execution required. This cross-platform threat affects both Windows and macOS systems.
Cursor and other AI-powered IDEs face elevated risks due to their automated file scanning and project interaction features. Attackers can weaponize these functionalities to exfiltrate data, deploy malware, or compromise cryptocurrency private keys. Verified incidents involving AI coding tools confirm the exploit's real-world impact.