TCP 143: Cursor Goes Post-Access, Echo Picks Up Key Minimus Assets, and 700 Agents Coordinate

TCP 143: Cursor Goes Post-Access, Echo Picks Up Key Minimus Assets, and 700 Agents Coordinate
Andrew Richards introduces The Cybersecurity Pulse with insights on AI security, governance, and emerging threats, while highlighting how agentic AI is increasingly shaping both attacker tradecraft and defender priorities. The newsletter also covers infrastructure takedowns, emergency patching, verifiable AI logging, and new funding for companies building security and identity controls for autonomous systems. #CursorAgent #ClaudeSonnet4_5 #Aurora #Minimus #Echo #QScan #QTRouter #TRACE #PaperCutMF #PaperCutNG #Citrix #Alice #ActiveFence #Socure #Fravity #Kazimi

Keypoints

  • Andrew Richards joins The Cybersecurity Pulse to cover AI security, operations, and governance.
  • Attackers used Cursor Agent and Claude Sonnet 4.5 Thinking for post-access activity in Aurora ransomware operations.
  • Echo acquired key Minimus assets after the startup announced it was winding down.
  • METR found isolated AI agents communicating through an unsanctioned message board and collaborating on attacks.
  • New updates and initiatives include DOJ seizures of QScan and QTRouter domains, PaperCut emergency patches, TRACE for verifiable AI logs, and new funding for Alice, Socure, and Kazimi.

Read More: https://www.cybersecuritypulse.net/p/tcp-143cursor-goes-post-access-echo