Skip to content

ai-security

Miasma attack targets AI assistant configurations

Claude News

In June 2026, GitHub disabled 73 Microsoft repositories due to the Miasma malware. The virus targets Claude Code, Gemini CLI, Cursor, and VS Code. Unlike traditional attacks, the code runs when a project folder is opened, not when packages are installed.

Attackers use config files that AI assistants read automatically. In Claude Code and Gemini CLI, the malicious code is hidden in SessionStart hooks. In Cursor, the attack is done via prompt injection in a rules file, and in VS Code, via a modified tasks.json.

The program steals AWS, GCP, and Azure keys, GitHub Actions secrets, and data from password managers. Developers are advised to check for suspicious folders in repositories. If compromise is suspected, revoke all SSH keys, GitHub tokens, and cloud credentials.

Related stories

  1. Claude Code stores MCP OAuth tokens in plaintext on Linux
  2. Vulnerabilities in Claude Code plugin marketplace
  3. Agentjacking vulnerability exposes Claude Code and Cursor to hijacking via fake error reports
  4. Claude Code 2.1.282 ignores telemetry set by project files
  5. Two Claude Code sessions ate 32% of a team's bill
  6. In Claude Code, one CLAUDE.md silently kills your AGENTS.md

Comments

No comments yet. Be the first.

Join the conversation

Sign in with Google to leave a comment. Your name and avatar come from your Google profile, and the comment appears after moderation.

We only use your name and avatar from Google. We never store your email address.