CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Malware is targeting AI tools in software development environments

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 3038

As cited

Copy frozen at (site build).

threat intel

Malware is targeting AI tools in software development environments

Sandworm_Mode, a self-propagating worm discovered in February, targets AI coding assistants and software development environments to steal credentials, API keys, and secrets from CI/CD pipelines and major language model providers. The malware blends its activity with legitimate development traffic, uses multi-day delays to evade detection, and destroys compromised environments if unable to spread. CrowdStrike has monitored the threat for four months but has not determined its origin or ultimate intent, though it appears designed for persistent access and may represent a broader trend of supply-chain attacks against AI development toolchains.

Why it matters: Software development teams using AI assistants and automated workflows face credential theft and supply-chain compromise that could grant attackers access to cloud services, LLM providers, and downstream dependencies; detection is difficult because malicious activity mimics normal development noise.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Malware is targeting AI tools in software development environments

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Malware is targeting AI tools in software development environments

Sandworm_Mode, a self-propagating worm discovered in February, steals credentials and keys from artificial intelligence (AI) development tools, large language model (LLM) providers, and continuous integration/continuous deployment (CI/CD) systems to move laterally through software supply chains. The malware blends malicious activity with legitimate commands in AI-heavy environments, uses multi-day delays to evade detection, and destroys compromised systems if unable to spread. CrowdStrike has observed similar active supply-chain packages but has not determined who developed Sandworm_Mode or its ultimate objective.

Why it matters: Development teams and organizations relying on AI coding assistants and automated workflows face credential theft and supply-chain compromise; defenders must increase monitoring of dependency pulls and application programming interface (API) key access in AI toolchains to detect this new class of worm.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Malware is targeting AI tools in software development environments

Sandworm_Mode, a self-propagating worm discovered in February, steals credentials and keys from artificial intelligence (AI) development tools, large language model (LLM) providers, and continuous integration/continuous deployment (CI/CD) systems to move laterally through software supply chains. The malware blends malicious activity with legitimate commands in AI-heavy environments, uses multi-day delays to evade detection, and destroys compromised systems if unable to spread. CrowdStrike has observed similar active supply-chain packages but has not determined who developed Sandworm_Mode or its ultimate objective.

Why it matters: Development teams and organizations relying on AI coding assistants and automated workflows face credential theft and supply-chain compromise; defenders must increase monitoring of dependency pulls and application programming interface (API) key access in AI toolchains to detect this new class of worm.

VendorsMicrosoftCrowdStrike
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary