


Perceptive Security
SOC/SIEM Consultancy

Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks
Published:
6 december 2025 om 15:24:00
Alert date:
6 december 2025 om 17:00:59
Source:
thehackernews.com

Security researchers discovered over 30 vulnerabilities in AI-powered Integrated Development Environments (IDEs) collectively named IDEsaster. These flaws combine prompt injection primitives with legitimate features to enable data exfiltration and remote code execution attacks. The vulnerabilities affect popular AI coding tools and represent a significant security risk for developers using these platforms. The research was conducted by security researcher Ari Marzouk (MaccariTA) and highlights emerging threats in AI-assisted development environments.
Technical details
Mitigation steps:
Affected products:
AI-powered IDEs
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.