07/06/2026
🪱 When the worm targets the assistant: Miasma turns AI coding agents into the trigger
🖥️ A self-replicating worm has turned the AI coding assistant into a delivery mechanism, and the same campaign just forced one of the larger takedowns the open-source supply chain has seen. On June 5, GitHub disabled 73 Microsoft repositories after the Miasma campaign re-compromised Azure’s durabletask project, per OpenSourceMalware. In separate source-repository compromises, researchers at SafeDep documented Miasma planting payloads that fire when a developer opens an affected project in Claude Code, Cursor, Gemini CLI or VS Code.
⚖️ For security, privacy, compliance, and eDiscovery professionals, this is a governance problem wearing a malware costume. Stolen cloud keys and GitHub secrets feed breach response, regulatory notification, and source-code-theft litigation. The artifacts that matter, developer workstations, build logs, and AI-agent configuration files, sit outside most preservation maps. When a worm exploits the trust model rather than a software flaw, vendor diligence and software bill of materials review move from paperwork to defense.
👀 Watch the next wave. The operators are mutating descriptions and ex*****on paths daily, and the AI-agent trigger is a template other actors will copy. Track node-gyp behavior, scope your tokens, and assume the developer environment is now in scope for both attackers and discovery.
Read the complete article from ComplexDiscovery OÜ's cybersecurity beat at https://complexd.blog/4v6y2os.