PulseAugur
中
实时 04:17:34
English(EN) Miasma Worm: How Opening a Repo in Claude Code Became a Credential Theft Vector

AI 编码工具在新的 Miasma Worm 凭证盗窃攻击中被利用

一种名为 Miasma Worm 的新型供应链攻击已经出现,它利用 AI 编码工具中的配置文件来窃取凭证。攻击者利用 Claude Code 和 Gemini CLI 等工具中的会话启动钩子(session start hooks)以及 Cursor 中的代理指令(agent instructions)和 VS Code 中的自动任务(auto-tasks)等功能。此攻击归因于 TeamPCP,已通过嵌入一个在这些 AI 开发环境中打开项目时自动执行的 JavaScript 凭证收集器,成功攻击了 100 多个 GitHub 仓库。 AI

影响 凸显了 AI 开发工具中的关键安全风险,迫切需要立即修补并提高对新型供应链攻击向量的警惕性。

排序理由 文章详细介绍了针对特定 AI 编码工具的安全漏洞和攻击方法,而非新的模型发布或核心研究。

在 dev.to — Claude Code tag 阅读 →

AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →

AI 编码工具在新的 Miasma Worm 凭证盗窃攻击中被利用

本文如何被排名

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
文章详细介绍了针对特定 AI 编码工具的安全漏洞和攻击方法,而非新的模型发布或核心研究。
Source corroboration
Single-source cluster
Only one publisher covered this so far. Single-source stories can still rank when the publisher is high-authority, but they lack cross-source corroboration.
Topics
product, safety
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
High
Clearly on-topic for AI-industry coverage.
Story freshness
118 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

完整方法见我们的编辑标准。

报道来源 [1]

  1. dev.to — Claude Code tag TIER_1 English(EN) · Toni Antunovic ·

    Miasma Worm:在 Claude 代码中打开仓库如何成为凭证盗窃的载体

    <p><em>This article was originally published on <a href="https://lucidshark.com/blog/miasma-worm-ai-coding-tool-config-credential-theft-2026" rel="noopener noreferrer">LucidShark Blog</a>.</em></p> <p>On June 5, 2026, attackers pushed a single malicious commit to <code>Azure/dura…