BotBeat
...
← Back

> ▌

AnthropicAnthropic
POLICY & REGULATIONAnthropic2026-06-05

Supply Chain Attack Targets AI Developer Tools via Obfuscated Setup Hook

Key Takeaways

  • ▸Malicious code injected via .github/setup.js exploits trusted developer tool integrations (Claude hooks, Gemini hooks, Cursor, VSCode)
  • ▸Attack spreads through deceptive skip-CI commits on open PRs, then persists after merge
  • ▸Payload is intentionally obfuscated to complicate detection and incident response
Source:
Hacker Newshttps://news.ycombinator.com/item?id=48409869↗

Summary

A significant supply chain attack has compromised developer environments by injecting malicious code into popular development tools and AI platforms. The attack, discovered the evening of June 4, 2026 (BST), targets integration points including Claude hooks, Gemini hooks, Cursor setup, and VSCode task configurations. The attack vector is an obfuscated Node.js file (.github/setup.js) that executes automatically when developers initialize these tools.

The malware spreads rapidly through open pull requests by adding mimicked skip-CI commits that bypass code review processes. Once merged into main branches, the payload persists across developer clones and installations. The obfuscated nature of the payload suggests sophisticated adversaries attempting to evade detection and complicate forensic analysis. As of the disclosure, the original attack source remains unidentified, and organizations are still assessing the full scope of the compromise and data exfiltration.

The attack affects the broader AI developer ecosystem, targeting tools from multiple companies including Anthropic (Claude), Google (Gemini), Anysphere (Cursor), and Microsoft (VSCode integrations). This incident underscores vulnerabilities in supply chain security for developer-focused AI platforms and the risks posed by automated tool integrations that execute code without explicit user approval.

  • Supply chain attack affects multiple AI companies' developer tools simultaneously
  • Original attack vector and payload details remain under investigation
MLOps & InfrastructureCybersecurityAI Safety & AlignmentPrivacy & Data

More from Anthropic

AnthropicAnthropic
INDUSTRY REPORT

AI IPO Race Heats Up as Anthropic Stock Becomes More Valuable Than Cash in San Francisco

2026-06-05
AnthropicAnthropic
RESEARCH

Claude AI Assists in Discovery of Critical Zcash Counterfeiting Vulnerability, Triggering Market Crash

2026-06-05
AnthropicAnthropic
INDUSTRY REPORT

Anthropic Files for IPO as Claude Models Dominate AI Arena Rankings

2026-06-05

Comments

Suggested

MITMIT
RESEARCH

Expert Survey Warns of 10% Catastrophic AI Risk Within 5 Years Without Action

2026-06-05
NVIDIANVIDIA
INDUSTRY REPORT

Semiconductor Capacity Constraints to Slow AI Spending Growth, Gartner Forecasts Show

2026-06-05
AnthropicAnthropic
RESEARCH

Claude AI Assists in Discovery of Critical Zcash Counterfeiting Vulnerability, Triggering Market Crash

2026-06-05
← Back to news
© 2026 BotBeat
AboutPrivacy PolicyTerms of ServiceContact Us