← Blog
Industry CommentarySecurityAI-Assisted Development

Miasma Worm: When AI Coding Agents Become the Attack Surface

The Miasma supply-chain worm compromised 73 Microsoft GitHub repositories in June 2026 by planting config files that execute a credential-harvesting payload when a developer opens a repo in an AI coding tool. Here is what happened and what it means.