← registry

Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories

An attacker hijacked an AI coding assistant session at a SaaS provider and used it to distribute malware across approximately 100 internal repositories after poisoning software recommendations.

Categorysupply_chain
Severitycritical
AI systemcopilot
Sectorstechnology
Harm typessecurityfinancialreputational
Lifecycle stageoperation
Actorexternal_attacker
Published2026-09-16 13:37:07

Summary is Secursion's own; full text lives at the source. Attribution preserved.