logo

Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack

ID: bf0f31f9-4200-5fcc-a23f-9d5f7d5b7fc5

STIX ID: report--bf0f31f9-4200-5fcc-a23f-9d5f7d5b7fc5

Feed Name: CosmicBytez Labs

Threat Score
85/100

Date Published: 2026-06-06

Date Updated: 2026-06-11

...
...

Miasma is a self-replicating supply-chain worm that automated compromise of GitHub repositories by stealing CI/CD tokens, injecting malicious workflows, and using harvested credentials to spread; Microsoft confirmed 73 affected repositories across Azure, Azure-Samples, Microsoft, and MicrosoftDocs, and the report outlines impact, detection indicators, and mitigation steps for downstream consumers and enterprise teams.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.