Observed Signal · Jun 8, 2026 · Security Breach · Source: techcrunch · Impact: 4/5 · Sentiment: Negative

Microsoft GitHub Repos Injected with Password-Stealing Malware

Executive Signal Summary

Microsoft disabled access to dozens of its open-source GitHub repositories after security researchers flagged malware injected into project code that steals passwords and credentials when developers open the compromised tools in AI coding apps. Affected projects include Azure-related tools and developer integrations for AI coding environments such as Claude Code, Google’s Gemini CLI and VS Code. Security firms Cloudsmith and OpenSourceMalware were among the first to report the incident. At least 70 Microsoft-owned repositories were marked disabled on GitHub. The incident appears related to a recent mid-May compromise of Microsoft’s Durable Task project and has been described by researchers as a potential re-compromise or follow-on breach.

Polaris7 AgentPolaris7 Strategic Assessment
High Confidence

A supply‑chain compromise of Microsoft‑owned open-source tooling can expose developer credentials, affect cloud security, and erode trust in widely used developer libraries — a significant incident from a major platform.

SIGNAL RADAR

Track Microsoft Signals & Market Shifts in Real-Time

Polaris7 autonomous intelligence agents track regulatory filings, primary sources, executive changes, and deal flow 24/7. Create your free Explorer workspace to monitor these entities.

Start Free in Explorer
Free Explorer tierNo credit card requiredInstant watchlist setup

Key Takeaways & Evidence Grounding

  • Microsoft cut off access to dozens of its open-source projects on GitHub while investigating injected malware.
  • At least 70 Microsoft-owned repositories were disabled with a GitHub notice citing terms-of-service violations.
  • Security firms Cloudsmith and OpenSourceMalware reported the malware; it stole user passwords and other credentials when developers opened compromised tools in AI coding apps.
  • Affected projects relate to Azure and developer tooling, including integrations for Claude Code, Gemini’s CLI and VS Code.
  • Researchers say this incident is linked to a mid‑May compromise of Microsoft’s Durable Task project and may represent a "re-compromise."

Ontology Mapping & Concepts

Primary Source Grounding & Direct Attribution
Direct Origin Attribution
Primary Reporting: techcrunch•Published: Jun 8, 2026
Original Coverage Title: “Microsoft’s open source tools were hacked to steal passwords of AI developers”

Related Market Signals & Shifts

Recent verified developments and strategic activity across this market segment.

Supply-Chain SecurityJun 9, 2026

Microsoft npm Packages Backdoored; AI Agents Trigger Credential Stealer

Seventy-three cryptographically signed Microsoft npm packages were compromised with a credential‑stealing worm called “Miasma,” derived from an open-source toolkit. The malware deploys a small (≈28 KB) payload that automatically harvests credentials from cloud providers (AWS, Azure, GCP), Kubernetes, many developer tool configs and password managers, and then spreads laterally through cloud infrastructure. The payload is triggered simply by opening a package inside AI coding agents and IDE integrations (examples named: Claude Code, Gemini CLI, Cursor, VS Code). Attackers used stolen Microsoft publisher credentials to publish malicious builds that carried valid SLSA provenance attestations, defeating provenance-only detection. The same Microsoft account had previously been compromised in May 2026 (durabletask Python SDK on PyPI), raising concerns about credential rotation and remediation.

Read assessment
Platform SecurityMay 20, 2026

GitHub Hack: Data Stolen from ~3,800 Internal Repos

GitHub, owned by Microsoft, confirmed a security breach in which attackers stole data from approximately 3,800 of the company’s internal code repositories. The company said it detected and contained a compromise of an employee device that involved a poisoned Visual Studio Code (VS Code) extension. GitHub reported no evidence so far that customer information stored outside of its internal repositories was impacted, and its investigation remains ongoing. A hacking group called TeamPCP has claimed responsibility and is reportedly selling the stolen data on a cybercrime forum. The incident follows a pattern of supply‑chain attacks against developer tools and extensions, with prior related breaches affecting Trivy, the European Commission, Tanstack, and resulting targeting of other major tech organisations.

Read assessment
Large Language Models (LLM) & AIMay 22, 2026

GitHub Outages Undercut Microsoft's AI Coding Lead

Microsoft-owned GitHub has faced repeated reliability incidents and a recent security compromise that have eroded its early advantage in AI-assisted coding. Since March, GitHub experienced more than a dozen multi-hour incidents; an employee device compromise exposed roughly 3,800 of GitHub’s internal code libraries. Executive turnover and leadership gaps (including the 2025 departure of CEO Thomas Dohmke and recent retirements/transfers inside Microsoft) coincided with rising competition from tools such as Cursor and Anthropic’s Claude Code. GitHub is moving Copilot to usage-based billing in June and has limited new individual Copilot signups to protect service quality. The outages and pricing changes have prompted some enterprises to evaluate alternatives like GitLab, Bitbucket, and multi-cloud or self-hosted options.

Read assessment

Track Real-Time Market Signals & Shifts

Set up custom watchlists to receive automated, evidence-grounded executive digests whenever material signals or shifts occur across your tracked landscape.