A new proof-of-concept attack shows that malicious Model Context Protocol servers can inject JavaScript into Cursor’s browser — and potentially leverage the IDE’s privileges to perform system tasks.
Claude can be a genuinely impressive AI tool, especially if you're considering Claude Code's capabilities. But apart from writing code and handling daily conversations, it can do much more as soon as ...