73 Microsoft Open-Source Packages Compromised for 2nd Time in Weeks With Credential-Stealing Malware

According to multiple security researchers, 73 cryptographically verified Microsoft open-source packages were compromised late last week with advanced credential-stealing code that activates when developers use them in AI coding agents. The malicious payload, tracked as Miasma malware, steals credentials from AWS, Azure, GCP, Kubernetes, password managers, and over 90 developer tool configurations before spreading through cloud infrastructures. This marks the second supply-chain attack on Microsoft repositories in as many months, following a May compromise of the durabletask Python SDK. GitHub initially disabled the packages citing terms of service violations rather than flagging them as malicious. Microsoft did not acknowledge potential compromise until Monday.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments