logo

When Your AI Coding Assistant Becomes the Attack: The Hades Supply Chain Campaign

ID: f3b35c6d-e5d1-5cc0-a192-03fbb7239f37

STIX ID: report--f3b35c6d-e5d1-5cc0-a192-03fbb7239f37

Feed Name: Morphisec Blog

Threat Score
90/100

Date Published: 2026-08-28

Date Updated: 2026-08-29

...
...

UNC6780/TeamPCP ran a multi-wave supply-chain campaign that hijacked open-source packages and developer environments to steal credentials (reported ~294,842 secrets from 6,943 machines), partnered with a ransomware group, and exfiltrated ~3,800 GitHub repos. Its latest Hades variant uses Python .pth startup hooks to execute a Bun runtime and persists by injecting instructions into AI coding assistant configurations so the assistant executes attacker code; it also uses prompt-injection comments to fool AI-based code reviewers. The report highlights that detection-first approaches (including AI review) are insufficient and advocates prevention-at-runtime to block execution before credentials are stolen.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.