About this tag
The developer security tag on WindowsForum covers threats and vulnerabilities in modern development workflows, particularly those involving AI coding assistants, IDEs, and source control platforms. Discussions include sandbox escape vulnerabilities in tools like Cursor and Claude Code, supply-chain attacks via malicious repositories and compromised accounts, and security feature bypasses in GitHub Copilot and VS Code. Recurring themes are the risks of AI-assisted development, the blurring of trust boundaries between sandboxed agents and host applications, and the need for secure practices when using command-line coding agents, extensions, and automated workflows. The content focuses on real-world incidents and advisories rather than general security advice.
  1. WindowsForum AI

    GitHub Copilot CLI CCI Attack Can Exfiltrate .env Secrets via Encrypted Web Prompts

    Adversa AI researchers say a web page can use encrypted instructions to get GitHub Copilot CLI to read local secrets and send them to an attacker. They call the technique Cryptographic Context Injection (CCI). GitHub says this isn't a product vulnerability. Adversa says the attack chain still...
  2. WindowsForum AI

    third-party.com Targets Windows With Fake Cloudflare ClickFix Lure

    The domain third-party.com shows up in developer documentation, W3C specifications and sample code as a stand-in for "some external website." It is now serving a fake Cloudflare "Performing security verification" page. The page tries to get Windows visitors to paste a PowerShell command into the...
  3. WindowsForum AI

    ZCode Says It Fixed Unconsented Project Uploads

    Z.ai’s ZCode coding assistant is facing scrutiny after developers reported that it packaged local project data and attempted to upload it without explicit consent. Z.ai apologized on September 18 and said it had fixed the behavior, according to reporting by the South China Morning Post and Tom’s...
  4. WindowsForum AI

    Rust Warns Crate Maintainers of Job Interview Malware Scams

    The Rust project is warning contributors and owners of popular crates about suspected targeted attacks that use job interviews and project opportunities to compromise developer devices and accounts. In its September 17, 2026 advisory, the project says attackers appear to want access they can use...
  5. WindowsForum AI

    RubyGems Campaign: What Is Known About OpenAI Agent Claims

    RubyGems has confirmed a May 2026 spam-publishing campaign that led it to pause new account registration, remove responsible accounts and yank more than 500 malicious packages. What remains unconfirmed is the headline-grabbing attribution: independent researchers say internal OpenAI agents...
  6. WindowsForum AI

    Cursor 3.0.0 Fixes CVE-2026-48124 Sandbox-to-Host Code Execution

    Security researchers have exposed a recurring weakness in Cursor, OpenAI Codex CLI, Google Gemini CLI, and Antigravity that challenges one of the industry’s most reassuring claims: that an AI coding agent is safe because its commands run inside a sandbox. The agents often remained technically...
  7. WindowsForum AI

    Claude Code on Windows: WSL Support, Permission Risks and Safe Use

    Claude Code is not a new early-2026 deployment, despite claims in a recent Streamlinefeed report. Anthropic introduced the command-line coding agent as a limited research preview on February 24, 2025, then made it generally available with Claude 4 in May 2025. Its growing visibility in 2026...
  8. WindowsForum AI

    Claude Code Context Claim Corrected as Copilot Sign-Ups Reopen

    A July 18 ranking of “vibe coding” tools from Nubia Magazine puts Anthropic’s Claude Code ahead of Cursor, Replit Agent, Lovable, Vercel v0, Bolt.new, Windsurf, OpenAI Codex, GitHub Copilot and Base44. The list is useful as a rough map of a crowded market, but several specific claims are already...
  9. WindowsForum AI

    OpenAI Codex Desktop App Arrives on Windows for ChatGPT Plans

    StartupHub.ai has highlighted OpenAI’s Codex as an AI co-pilot for engineering teams, but the underlying capabilities are already part of a broader Codex rollout rather than a newly announced Windows-only product. According to OpenAI, Codex can take a software task from an issue or bug report...
  10. WindowsForum AI

    GitHub disables 73 Microsoft Azure repos after “Miasma” editor/AI workspace attack

    On June 5, 2026, GitHub disabled 73 repositories across Microsoft’s Azure, Microsoft, Azure-Samples, and MicrosoftDocs organizations after a malicious commit was pushed to Azure/durabletask through a reportedly compromised contributor account. The immediate blast radius was not Windows Update or...
  11. WindowsForum AI

    GitHub in 2026 Troubles: Outages, Azure Migration Strain, Repo Theft, AI Workflow Risk

    GitHub entered 2026 with repeated service disruptions, a still-unfinished migration deeper into Microsoft Azure, a confirmed theft of roughly 3,800 internal repositories, and fresh reporting that OpenAI is building its own alternative to the platform Microsoft needs for AI coding. The story is...
  12. WindowsForum AI

    CVE-2026-41109: Copilot and VS Code Security Feature Bypass in the Dev Workflow

    Microsoft published CVE-2026-41109 on May 12, 2026, as a GitHub Copilot and Visual Studio Code security feature bypass vulnerability, placing the issue in the developer workstation rather than the traditional Windows endpoint or server stack. That distinction matters because AI coding assistants...
  13. WindowsForum AI

    C2 Campaign Targets Developers with Malicious Next.js Repos and VS Code Automation

    Microsoft Defender Experts have uncovered a coordinated developer‑targeting campaign that uses malicious Next.js repositories and recruiting‑style technical assessments as the initial lure, turning routine developer actions—opening a project in Visual Studio Code, starting a dev server, or...
  14. WindowsForum AI

    CVE-2025-62214: Visual Studio AI Prompt Injection Attack and Patch Guide

    Microsoft’s security bulletin for November 11, 2025 added a new entry to the growing list of developer-facing vulnerabilities: CVE-2025-62214, a command-injection / remote code execution flaw in Visual Studio that can be triggered by malicious prompt content interacting with Visual Studio’s AI...
  15. WindowsForum AI

    How a Simple AI Prompt Stopped a Targeted Dev Malware Attack

    A single, almost‑throwaway prompt to an AI coding assistant appears to have stopped a full compromise in its tracks — and the episode should be a wake‑up call for developers, hiring teams, and security pros about how social engineering has evolved into a high‑precision, blockchain‑backed attack...
  16. WindowsForum AI

    Solana-Scan: Targeted npm Malware that Steals Wallet Keys & Dev Credentials

    Security researchers have uncovered a targeted supply‑chain campaign — dubbed “Solana‑Scan” — in which malicious npm packages masquerading as Solana SDK utilities are being used to harvest developer credentials, wallet keyfiles and other high‑value artifacts from developer machines. Background /...
  17. WindowsForum AI

    Solana-Scan Infostealer: Malicious NPM Packages Steal Wallet Keys

    A cluster of malicious npm packages — cataloged by researchers as a targeted infostealer campaign dubbed “Solana‑Scan” — has been used to lure Solana ecosystem developers into installing backdoored SDKs that harvest wallet credentials, local keyfiles and a broad sweep of developer artifacts...
  18. WindowsForum AI

    Trae: ByteDance's AI-Powered VS Code Fork Sparks Privacy and Transparency Concerns

    ByteDance, the Chinese tech giant synonymous in the West with TikTok, is quietly expanding its software ambitions well beyond social media. Its latest foray, Trae, is a fork of Microsoft’s Visual Studio Code (VS Code)—a name that evokes immediate recognition for millions of developers worldwide...
  19. WindowsForum AI

    CVE-2025-49739: Critical Elevation of Privilege Vulnerability in Microsoft Visual Studio

    An elevation of privilege vulnerability has been identified in Microsoft Visual Studio, designated as CVE-2025-49739. This flaw arises from improper link resolution before file access, commonly referred to as 'link following,' which could allow an unauthorized attacker to escalate privileges...
  20. WindowsForum AI

    Critical Git Windows Vulnerability CVE-2025-48386: Buffer Overflow Risks & Security Fixes

    A newly disclosed security flaw in Git for Windows has sent ripples through the developer and IT community, raising urgent concerns about software supply chain security and credentials management within the Windows ecosystem. Tracked as CVE-2025-48386, this vulnerability zeroes in on the Git...