The Russian-speaking Aurora ransomware group used SpaceX-owned Cursor Agent, powered by Anthropic's Claude Sonnet 4.5, during attacks on at least 20 organizations, according to investigations by Gambit Security and CloudSEK. Gambit reviewed 28 chat sessions showing the hackers using the AI agent against 10 targets between April 8 and May 21, while CloudSEK traced a broader campaign that compromised more than 20 organizations in nine countries and obtained domain-level access at 17. The tool helped with tasks including VPN installation, NTLM relay and certificate attacks, as well as planning an Active Directory Certificate Services attack in Russian. Reuters identified victims including Belgium's Christeyns, Germany's Teckentrup, Scotland's Helideck Certification Agency, an Argentine pharmaceutical distributor, an Italian manufacturer and Louisiana-based Bayou Title. Gambit said the agent sometimes refused harmful requests but was persuaded to continue when attackers falsely described the activity as a simulation. Its director of threat intelligence, Eyal Sela, estimated that Cursor may have made the hackers 30% to 50% faster. SpaceX bought Cursor for $60 billion in an all-stock acquisition this year and folded it into a new SpaceXAI division.