I Gave Claude Code the Keys. So Did a Worm.
A developer detailed three vulnerabilities in the AI-coding-agent stack, including a supply chain worm that persists in developer toolchain configs, an abuse of shell built-ins to bypass Cursor's command allowlist, and a…