
Your AI, My Shell: How Prompt Injection Turns Coding Editors Into Attack Vectors
AI coding editors like GitHub Copilot, Cursor, and Continue are now sitting between developers and their shell access. A September 2025 paper systematically studies how attackers can exploit this position — turning the AI from coding assistant into unwitting attack tool. The findings are specific, reproducible, and require immediate attention.




































































































