Morningstar Chainguard and Cursor Enhance Security for AI-Driven Software Development
Article Content
- •Chainguard and Cursor partner to secure AI-driven software development.
- •84% of developers use AI agents, increasing risk from supply chain attacks.
- •The partnership provides secure-by-default artifacts to mitigate security risks.
Chainguard and Cursor have partnered to improve security in agentic software development by providing secure-by-default open source artifacts. This collaboration aims to close the software supply chain trust gap, as 84% of developers are now using AI agents that rely on public registries vulnerable to supply chain attacks. Recent incidents have shown how malicious packages can infiltrate popular open source projects, leading to significant operational and financial risks. The partnership ensures that every dependency within AI-generated code is sourced from verifiable and secure origins, allowing organizations to scale their AI-driven development safely. The initiative responds to the growing need for security in environments where dependency selection occurs programmatically at scale, without traditional manual review processes. This new approach is crucial as organizations face increasing threats from compromised artifacts in production pipelines.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track Shai-Hulud Worm in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…