Black Hat Asia 2026 | IDEsaster 2.0: Another Novel Vulnerability Class in AI IDEs @BlackHatOfficialYT
Black Hat Asia 2026 | IDEsaster 2.0: Another Novel Vulnerability Class in AI IDEs  @BlackHatOfficialYT
Uploaded August 2026 | Updated September 2026, 3 weeks ago
AI IDEs continue to be on the rise, and they are not going away anytime soon.

Last year, alongside dozens of vulnerabilities published publicly in AI IDEs, I published "IDEsaster" exposing a novel vulnerability class using AI agents and IDE features, leading to over 20 CVEs. This follow‑up research demonstrates that the architectural risks go deeper than previously understood.

This Briefing presents (once again) a new universal vulnerability class affecting all AI IDEs. Unlike the previous attack chain, this one targets an underlying component that all of you use. A component not originally designed with the Secure for AI principle in mind, yet it strongly affects how IDEs behave. When AI agents interact with this component, it creates a powerful and largely invisible attack surface leading to an IDEsaster.

The session concludes with higher‑level architectural insights on how AI applications need to be built to avoid this repeating issue.

Ari (MaccariTA) Marzouk | Senior Security Researcher, Microsoft Red Team

blackhat.com/asia-26/briefings/schedule/?#idesaster-20-another-novel-vulnerability-class-in-ai-ides-on-demand-only-51309
Black Hat Asia 2026 | IDEsaster 2.0: Another Novel Vulnerability Class in AI IDEsOperation PoisonedApple: Tracing Credit Card Information Theft to Payment FraudBlack Hat Vault | Cyber GrannyInternal Server Error: Exploiting Inter-Process Communication in SAPs HTTP ServerSecTor 2025 | Threat Architecture, Attack Surfaces & Real-World RiskSecTor 2025 | Unmasking a North Korean IT FarmBlack Hat Asia 2026 | Remote Server, Local Root. Welcome to MCP.Black Hat USA 2025 | Watch Your (Lock)Step: Glitching into Automotive ProcessorsWhy leaders in cybersecurity keep coming back to Black HatBlack Hat USA 2026 | Reverse Engineering GCD, XPC Races, and macOS DetectionSecTor 2025 | Deconstructing a Meta-Adversary Forged from Offensive AIIndustroyer2: Sandworms Cyberwarfare Targets Ukraines Power Grid Again
Black Hat |

Black Hat Asia 2026 | IDEsaster 2.0: Another Novel Vulnerability Class in AI IDEs

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER