logo

The Miasma Worm Source Code Briefly Leaked on GitHub

ID: 04a806d9-26f7-5132-a05c-1189af3aa690

STIX ID: report--04a806d9-26f7-5132-a05c-1189af3aa690

Feed Name: CosmicBytez Labs

Threat Score
88/100

Date Published: 2026-06-10

Date Updated: 2026-06-11

...
...

The report describes the brief public leak of Miasma — a sophisticated, self‑propagating credential‑stealing worm used in supply‑chain attacks across npm, PyPI, and Go — noting infections that impacted major packages and cascaded into breaches at organizations such as GitHub, Grafana, and OpenAI; the availability of its source code raises the risk of rapid proliferation and lower‑skill actors adopting the tool, and the report provides defensive recommendations (audit dependencies, rotate secrets, enable 2FA, monitor outbound connections, lock dependency versions).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.