πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at an SaaS provider, then spread the Shai-Hulud worm across ~100 internal repos. The worm stole repository secrets and source co

πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at an SaaS provider, then spread the Shai-Hulud worm across ~100 internal repos. The worm stole repository secrets and source code; a poisoned package recommended by the assistant was accepted.

3 reportsother

Claim audit

No BS check run yet β€” press βš– to extract this story's claims and verify them against independent sources.

All coverage

πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at an SaaS provider, then spread the Shai-Hulud worm across ~100 internal repos. The worm stole repository secrets and source co

mastodon:infosec-exchangeother13d ago kagi β†—

πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at an SaaS provider, then spread the Shai-Hulud worm across ~100 internal repos. The worm stole repository secrets and source code; a poisoned package recommended by the assistant was accepted. πŸ”— https:// thehackernews.com/2026/09/atta cker-hijacks-ai-coding-assistant.html # AI # SupplyChain # Malware # InfoSec

πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at a SaaS provider, then used it to spread the Shai-Hulud worm across ~100 internal repositories. The assistant had recommended

mastodon:infosec-exchangeother12d ago kagi β†—

πŸ€– Mandiant: an attacker hijacked an active AI coding-assistant session at a SaaS provider, then used it to spread the Shai-Hulud worm across ~100 internal repositories. The assistant had recommended the poisoned tooling; the worm stole secrets and source code. πŸ”— https:// thehackernews.com/2026/09/atta cker-hijacks-ai-coding-assistant.html # AI # Malware # CyberSec