XUNA Logo

PRODUCTS

XUNA Voice

XUNA Voice

AI-powered voice calls.

XUNA iMessage & SMS

XUNA iMessage & SMS

Two-way iMessage and SMS outreach.

XUNA Chat

XUNA Chat

AI web chat.

XUNA WhatsApp

XUNA WhatsApp

AI-powered WhatsApp conversations.

XUNA Ringless VM

XUNA Ringless VM

Drop voicemails without ringing.

XUNA CRM

XUNA CRM

Automated lead tracking.

XUNA Reviews

XUNA Reviews

Automated review requests.

INDUSTRIES

Automotive

Automotive

Solutions for automotive industry.

Hospitality

Hospitality

Solutions for hospitality industry.

Travel

Travel

Solutions for travel industry.

Wellness & Med Spa

Wellness & Med Spa

Solutions for wellness and med spa industry.

Healthcare

Healthcare

Solutions for healthcare industry.

Agencies

Agencies

Solutions for agencies industry.

Insurance

Insurance

Solutions for insurance industry.

eCommerce

eCommerce

Solutions for eCommerce industry.

Every Business

Every Business

Solutions for every business.

INTEGRATIONS
PRICING
WHITE LABEL
PULSE
ENTERPRISE
CONTACT

Status

Loading article...
XUNA
Selected ByNVIDIA Inception ProgramGoogle for StartupsAWS Startups

Headquarters

3701 Midtown DrTampa, FL 33607

Contact

(855) 585-9862hello@xuna.ai

Products

  • Voice
  • iMessage & SMS
  • WhatsApp
  • Chat
  • Ringless VM
  • CRM

Industries

  • Automotive
  • Hospitality
  • Travel
  • Wellness & Med Spa
  • Healthcare
  • Agencies
  • Insurance
  • eCommerce
  • Every Business

Compare

  • ElevenLabs
  • VAPI
  • Retell AI
  • Synthflow
  • Deepgram
  • Vocode
  • Bland AI
  • Play.AI

Resources

  • White Label
  • Pulse
  • Integrations
  • Enterprise
  • Contact
  • Glossary

© 2026 XUNA AI. All rights reserved.

  • Partner Program $
  • Privacy Policy
  • Terms & Conditions
  • System Status
Hackers Poison Microsoft’s Code to Hijack Artificial Intelligence Developer Passwords
News

Hackers Poison Microsoft’s Code to Hijack Artificial Intelligence Developer Passwords

Microsoft just slammed the brakes on dozens of its own open source projects hosted on GitHub. The tech giant rushed to lock down these repositories after discovering that clever hackers managed to break into the accounts, injecting nasty password-stealing malware directly into the source code.

A massive portion of the compromised code connects directly to Microsoft’s cloud ecosystem, Azure. The breach also hit critical developer tools that engineers use daily to build modern artificial intelligence applications. Compromised software packages included popular developer assets like Claude Code, Gemini’s command line interface, and VS Code extensions.

Security firm Cloudsmith alongside the malware tracking community site OpenSourceMalware first spotted the malicious changes. They found that the hidden code quietly harvested user passwords and highly sensitive cloud credentials. The moment an engineer opened a compromised tool inside their AI coding environment, the malware sprang to life, stealing their access keys.

We do not know exactly how many software engineers accidentally downloaded the poisoned tools before Microsoft acted. However, Microsoft confirmed it pulled the dirty repositories down immediately to stop the bleeding. Company spokesperson Ben Hope stated that the security team temporarily removed a group of repositories while they investigated the potential malicious content. While the internal team restored a handful of safe repositories after a thorough review, several other projects remain entirely offline while the security engineering work continues.

As part of the cleanup process, Microsoft started reaching out directly to a small group of customers who likely downloaded the infected files. The company plans to keep monitoring the situation and will reach out through established support channels if they find more compromised accounts. Microsoft declined to share the exact number of developers hit by the breach when asked for details. Online records show that GitHub staff disabled at least 70 distinct Microsoft-owned projects for violating the platform’s terms of service. Anyone trying to load those project pages now sees a stark warning message instead of code.

This incident fits into a scary, growing trend of supply chain attacks targeting open source ecosystems. Instead of attacking a well-defended corporate network directly, hackers infect a trusted piece of software that thousands of companies rely on. When developers download the update, they willingly hand over the keys to their entire network. This specific strategy is incredibly dangerous because AI developers often possess massive privileges, giving hackers a back door into sprawling cloud networks and mountains of sensitive customer data.

While independent developers deal with these targeted code injections all the time, it is incredibly rare to see a massive tech titan like Microsoft get caught flat-footed. This marks the second time in just a few weeks that hackers successfully poisoned Microsoft’s public code repositories. In mid-May, security researchers discovered that hackers compromised Microsoft’s open source project called Durable Task, a popular tool used to build web applications. Security analysts fear that this latest incident is actually a re-compromise of that same project. This implies that Microsoft failed to fully kick the hackers out during their first cleanup attempt, or they are dealing with an entirely new, deeply embedded security vulnerability.

Quick Notes

3 min

Read Time

News
XUNA
XUNA AI
June 9, 2026
Back to Pulse
Share This Article
XUNA

Effortless Human-Like AI Phone Calls

Build a no-code AI phone system with our AI voice assistants: stop missing calls and start converting more leads.

Get Started With XUNA
Share This Post
Back to Pulse
XUNA PULSE

Related Articles

Medical Billing Meltdown: Hackers Raid Craneware Systems for Massive Data Haul
NewsXUNA AI

Medical Billing Meltdown: Hackers Raid Craneware Systems for Massive Data Haul

Hackers hit UK-based medical billing provider Craneware in a fresh cyberattack, stealing a huge volume of private files from its corporate network. Thousands of hospitals, clinics, and pharmacies across the United States rely on Craneware software to manage daily billing operations and track patient care costs. In a regulatory statement filed with the London Stock […]

Read More20 hours ago
Revolving Door at CAISI: Trump AI Chief Quits After Three Months
NewsXUNA AI

Revolving Door at CAISI: Trump AI Chief Quits After Three Months

Chris Fall, director of the Center for AI Standards and Innovation, stepped down from his position after serving just three months on the job. Multiple news outlets confirmed his departure, marking the latest sudden exit from the leadership team of the federal artificial intelligence agency. Fall took the job three months ago following the abrupt […]

Read More20 hours ago
The $1.5 Billion Reckoning: Anthropic Pays Up for Pirated Book Datasets
NewsXUNA AI

The $1.5 Billion Reckoning: Anthropic Pays Up for Pirated Book Datasets

Anthropic can finally start writing checks to a massive group of authors and book publishers. A federal judge gave final approval to the AI lab landmark $1.5 billion copyright settlement, closing out a major class action battle. Judge William Alsup of the US District Court for the Northern District of California issued preliminary approval last […]

Read More20 hours ago
Apple Versus OpenAI: The Legal War Threatening Sam Altman Hardware Empire
NewsXUNA AI

Apple Versus OpenAI: The Legal War Threatening Sam Altman Hardware Empire

Apple filed a trade secrets lawsuit against OpenAI, accusing the artificial intelligence giant of poaching former Apple workers to steal confidential insider information. OpenAI fired back immediately, claiming it has no knowledge of any evidence that backs up Apple claims. Still, legal experts and tech analysts believe this legal battle could throw a massive wrench […]

Read More1 day ago
Amazon Cloud Glitch Drops Billion-Dollar Shock on AWS Users
NewsXUNA AI

Amazon Cloud Glitch Drops Billion-Dollar Shock on AWS Users

Imagine logging into your cloud management dashboard on a regular Friday morning and seeing a bill for billions of dollars. That exact scenario hit several Amazon Web Services customers when a massive billing glitch threw account dashboards into chaos. Amazon confirmed it scrambled to fix a bug in its billing portal that told users they […]

Read More1 day ago
San Francisco Cracks Down: Tech Giants Forced to Kill Nudify Apps
NewsXUNA AI

San Francisco Cracks Down: Tech Giants Forced to Kill Nudify Apps

San Francisco city officials just ordered Apple and Google to strip dozens of nudify apps off their app stores. These programs use artificial intelligence to alter real photos and digitally undress people without their consent. City leaders want these software tools gone immediately, pointing directly to California state laws that ban the spread of non-consensual […]

Read More1 day ago
Uncle Sam Unlocks TikTok: Why Federal Workers Get Their Feeds Back
NewsXUNA AI

Uncle Sam Unlocks TikTok: Why Federal Workers Get Their Feeds Back

Federal workers can put TikTok back on their government phones. The Department of Justice cleared staff to download and use the short video app on official devices, according to reports from Reuters. This decision undoes a restriction that kept the platform off government hardware for years. Congress passed a law in 2022 that blocked federal […]

Read More1 day ago
Hollywood Cash Out: Inside Netflix’s $587 Million Bet on Ben Affleck’s AI Studio
NewsXUNA AI

Hollywood Cash Out: Inside Netflix’s $587 Million Bet on Ben Affleck’s AI Studio

Netflix just revealed the massive price tag behind one of its biggest technical buys of the year. In a recent regulatory filing with the Securities and Exchange Commission, the streaming giant confirmed that it paid 587 million dollars in pure cash to buy InterPositive. That startup, co-founded back in 2022 by actor and director Ben […]

Read More1 day ago