← Back to Feed
Your AI agent’s config is now the payload: How attackers are targeting the developer agent harness
July 21, 2026 · Tenable Blog · Severity: HIGH
Tenable reveals that attackers now target configuration files for AI coding assistants, such as settings.json and .cursorrules, to inject persistent malware. This new worm class evades AI-based scanners and propagates through organizational repositories by leveraging developer workflows.
Key Takeaways
- Attackers have shifted from hiding from AI tools to running inside them.
- By poisoning the config files that govern AI coding assistants, a new worm class achieves silent persistence, evades.