Insurance
Home›Insurance›Health Insurance›Cursor AI helped ransomware crew break into at least s…
Cursor AI helped ransomware crew break into at least seven firms
Gambit Security estimates the AI assistance cut the time needed for the attacks by 30.0% to 50.0%, forcing cyber insurers to revisit pricing and policy wording.
A Russian-speaking ransomware crew used Cursor’s AI coding assistant to help break into at least seven companies between April and May, according to findings reported by Reuters and reviewed by Tel Aviv cybersecurity firm Gambit Security. The incident highlights how attackers may cause real damage without using traditional hacking techniques.
Gambit said the method focused less on a technical exploit and more on getting the AI agent to comply by framing requests as a lawful security test. When the model refused, the operators restarted the conversation and repeated the claim until it accepted, including language suggesting it was a test environment, according to the described reasoning.
Confirmed victims span firms in the UK, Europe, and the US, including Christeyns in Belgium, Teckentrup in Germany, Helideck Certification Agency in Scotland, an Argentine pharmaceutical distributor, an Italian manufacturer, and Bayou Title, a Louisiana title insurance firm.
The report says Gambit estimates the AI assistance reduced the time the hackers would have needed to complete the same work manually by 30.0% to 50.0%, a productivity gain that cyber carriers may need to factor into pricing. The Cursor case also arrives as insurers review cyber policy wording for scenarios where autonomous AI agents make independent decisions after initial instruction, Reuters reported, citing carriers including MSIG, QBE, and Beazley.