{"slug": "microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users", "title": "Microsoft Hacked to Deliver Malware to Claude and Gemini Users", "summary": "Microsoft shut down over 70 of its own GitHub repositories, including those related to Azure and AI coding agents, after hackers planted malware designed to steal credentials when opened in AI coding tools like Claude Code and Gemini CLI. Cybersecurity researchers reported the breach, and Microsoft confirmed the incident in a statement to 404 Media. The full scope of the attack remains unclear as the investigation continues.", "body_md": "Microsoft has shut down a wave of its own repositories on GitHub, including those related to Azure and AI coding agents, as it investigates a data breach, according to research from cybersecurity researchers and a statement given to 404 Media by Microsoft. Hackers planted malware that would harvest peoples’ credentials when they opened it in AI coding tools like Claude Code or Gemini CLI, according to one set of researchers.\n\nThe exact contours of the breach are unclear, but researchers say Microsoft has disabled more than 70 of its own repositories, and pointed to a particular package that was previously compromised.\n\n## This post is for paid members only\n\nBecome a paid member for unlimited ad-free access to articles, bonus podcast content, and more.\n\n[Subscribe](/membership/)\n\n## Sign up for free access to this post\n\nFree members get access to posts like this one along with an email round-up of our week's stories.\n\n[Subscribe](/signup/)\n\nAlready have an account?", "url": "https://wpnews.pro/news/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users", "canonical_source": "https://www.404media.co/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users/", "published_at": "2026-06-08 15:50:35+00:00", "updated_at": "2026-06-11 17:11:46.169836+00:00", "lang": "en", "topics": ["artificial-intelligence", "ai-safety", "ai-policy", "ai-research", "ai-tools"], "entities": ["Microsoft", "GitHub", "Azure", "Claude Code", "Gemini CLI", "404 Media"], "alternates": {"html": "https://wpnews.pro/news/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users", "markdown": "https://wpnews.pro/news/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users.md", "text": "https://wpnews.pro/news/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users.txt", "jsonld": "https://wpnews.pro/news/microsoft-hacked-to-deliver-malware-to-claude-and-gemini-users.jsonld"}}