$ intel.mask2.ca

ADVISORY · 2026-06-11 · SRC BLEEPINGCOMPUTER · HIGH
2026-06-11 high REL 6/10

Miasma credential-stealing framework source code briefly exposed on GitHub

post-secondarygovernmentenergygeneral

The Miasma attack framework, which has been used in supply-chain attacks against open-source software ecosystems, had its source code temporarily leaked on GitHub. This framework is designed to steal credentials and has been leveraged for targeted attacks on development infrastructure.

Why it matters in Western Canada: Western Canadian organizations, particularly those in tech, energy, and government sectors that maintain open-source dependencies or contribute to public repositories, face increased risk from weaponized versions of this framework if it becomes widely accessible to threat actors.


Summary generated from the original advisory. Read the full source: bleepingcomputer

Source
https://www.bleepingcomputer.com/news/security/the-miasma-worm-source-code-briefly-leaked-on-github/
CVEs
None listed
Tags
miasma, credential-theft, supply-chain, malware, github
Provenance
mask2-ti-pipeline (AI-assisted, human-reviewable)