Supply chain hack disables 70 Microsoft open‑source projects on GitHub
Microsoft has disabled access to roughly 70 of its open‑source repositories hosted on GitHub after detecting a supply‑chain attack that injected password‑stealing malware, identified as “Miasma”. The malicious code targeted tools used for AI development, including Azure‑related utilities, Claude Code, Gemini CLI, and VS Code extensions, allowing attackers to capture credentials when developers opened the compromised tools.
GitHub separately confirmed that about 3,800 of its internal repositories were accessed in a related breach. The intrusion stemmed from a poisoned VS Code extension installed on an employee’s machine, and the hacking group TeamPCP claimed responsibility, offering the stolen source code for sale. Both Microsoft and GitHub rotated exposed secrets and are continuing investigations, though the exact number of affected users remains unknown.