CopyPasta License Attack Dey Target Coinbase Cursor AI Assistant
HiddenLayer don find one new CopyPasta License Attack wey dey put bad prompt injections inside project files like LICENSE.txt and README.md. When AI coding assistants like Coinbase own favorite tool, Cursor, dey handle those files, dem go see the bad payload as correct license text and go copy the bad instructions kakaraka for codebase. Ebi like dis self one dey also for other AI tools like Windsurf, Kiro, and Aider. This wahala fit cause stealth backdoor, siddon carry sensitive data comot, plus trigger big-big resource waka wey developer no sabi. Now say like 40% of Coinbase code na AI write and dem want make e reach 50% by October, the risk to spread wahala no small. This CopyPasta License Attack show say we need to scan for hidden talks, check AI-generated changes dem well-well, and treat every input to coding assistants like say no trust, to stop prompt-based attack for crypto platform dem.
Neutral
Dis vulnerability dey affect Coinbase internal code development, no be any particular cryptocurrency. E get as e be say e fit cause security wahala wey fit indirectly shake traders trust for the platform, but e no dey affect any crypto asset price or how e take work directly. So, immediate market effect for cryptocurrency prices go likely be neutral.