Claude Used to Create Malicious npm Packages: Over 670 Compromised Threaten Open Source
A recent cybersecurity incident reveals how large language models (LLMs) are being weaponized for malicious software development. Security researcher Sibi Moosa spotted an attacker using the alias "mousie-5212-super-formatter" leveraging Anthropic's Claude AI to generate harmful code and contaminate the npm package ecosystem. Within a short timeframe, over 670 malicious packages were uploaded to the npm registry, raising alarms over the speed and automation of such attacks.

At the core of this attack is the use of AI to drastically reduce the effort required to create malicious code. The compromised npm packages target developer credentials like npm tokens and GitHub tokens, as well as source code from private GitHub repositories. The attacker employs Claude to craft coherent data-stealing scripts and exfiltrates the stolen information to their own repositories. This case underscores how generative AI, while boosting productivity, also serves as a force multiplier for attackers, amplifying both efficiency and automation.
Experts note that automated package poisoning and code theft through AI models signify a new, intelligent stage in supply chain attacks. Traditional signature-based defenses are ill-equipped to counter the highly variable and deceptive malicious payloads that AI can generate. With the growing adoption of AI coding assistants, preventing their misuse for vulnerability exploitation and malware creation has become a critical priority in AI security governance.
Related article
DeepMind CEO Hassabis: I sleep six hours a day, usually feel energetic around 1 a.m.
Fortune recently featured an interview with Demis Hassabis, CEO of Google DeepMind, revealing his unconventional approach to rest and productivity. Hassabis disclosed that he sleeps very little, structuring his waking hours into two distinct work blo
OpenAI, Anthropic Vie for Market Share Despite Revenue Shortfalls
Despite recent reports suggesting OpenAI missed revenue targets, creating pressure on tech stocks this Tuesday, private AI lab investors remain resilient. Seasoned backers have confirmed they will not reduce investment despite negative media coverage
California AV Compliance: A New Era of Tickets, Geofences, and 1M Miles
Guident operates an AuveTech shuttle in South Florida, managing a four-mile route in West Palm Beach and a one-mile route in Boca Raton using its remote monitoring technology. | Credit: GuidentCalifornia is redefining the regulatory landscape for dri
Related Special Topic Recommendations
Comments (0)
0/500
A recent cybersecurity incident reveals how large language models (LLMs) are being weaponized for malicious software development. Security researcher Sibi Moosa spotted an attacker using the alias "mousie-5212-super-formatter" leveraging Anthropic's Claude AI to generate harmful code and contaminate the npm package ecosystem. Within a short timeframe, over 670 malicious packages were uploaded to the npm registry, raising alarms over the speed and automation of such attacks.

At the core of this attack is the use of AI to drastically reduce the effort required to create malicious code. The compromised npm packages target developer credentials like npm tokens and GitHub tokens, as well as source code from private GitHub repositories. The attacker employs Claude to craft coherent data-stealing scripts and exfiltrates the stolen information to their own repositories. This case underscores how generative AI, while boosting productivity, also serves as a force multiplier for attackers, amplifying both efficiency and automation.
Experts note that automated package poisoning and code theft through AI models signify a new, intelligent stage in supply chain attacks. Traditional signature-based defenses are ill-equipped to counter the highly variable and deceptive malicious payloads that AI can generate. With the growing adoption of AI coding assistants, preventing their misuse for vulnerability exploitation and malware creation has become a critical priority in AI security governance.
DeepMind CEO Hassabis: I sleep six hours a day, usually feel energetic around 1 a.m.
Fortune recently featured an interview with Demis Hassabis, CEO of Google DeepMind, revealing his unconventional approach to rest and productivity. Hassabis disclosed that he sleeps very little, structuring his waking hours into two distinct work blo
OpenAI, Anthropic Vie for Market Share Despite Revenue Shortfalls
Despite recent reports suggesting OpenAI missed revenue targets, creating pressure on tech stocks this Tuesday, private AI lab investors remain resilient. Seasoned backers have confirmed they will not reduce investment despite negative media coverage





Home






