iGEN
Visit IGEN World Explore IGEN Expo
EXPLORE UPGRADE PLANS
BREAKING
India must boost oilseed yields to cut edible oil imports, SEA chief says India Air Freights 5 Tonnes of Medical Aid to Afghanistan Under Humanitarian Assistance Tsakos Joins Greek Capesize Ordering Wave at Hengli Heavy Industries How US quietly kept Gulf crude moving despite Iran's Hormuz blockade Rupee Rebounds 31 Paise to 94.29 as Easing Oil, Dollar Index Boost Sentiment Shipping Braces for Monster El Niño as NOAA Warns of Record-Intensity Event Threatening Global Trade Lanes India May Require Refiners to Triple Crude Oil Inventories After Lessons From China Fleets Reposition for Hormuz Reopening Ahead of US-Iran Peace Deal Signing Gold price prediction today: Central bank buying, US-Iran peace deal support gold above $4,300/oz Middle East crude slips into discounts as US-Iran deal lifts global supply outlook India must boost oilseed yields to cut edible oil imports, SEA chief says India Air Freights 5 Tonnes of Medical Aid to Afghanistan Under Humanitarian Assistance Tsakos Joins Greek Capesize Ordering Wave at Hengli Heavy Industries How US quietly kept Gulf crude moving despite Iran's Hormuz blockade Rupee Rebounds 31 Paise to 94.29 as Easing Oil, Dollar Index Boost Sentiment Shipping Braces for Monster El Niño as NOAA Warns of Record-Intensity Event Threatening Global Trade Lanes India May Require Refiners to Triple Crude Oil Inventories After Lessons From China Fleets Reposition for Hormuz Reopening Ahead of US-Iran Peace Deal Signing Gold price prediction today: Central bank buying, US-Iran peace deal support gold above $4,300/oz Middle East crude slips into discounts as US-Iran deal lifts global supply outlook
Home ›› Technology ›› Cybersecurity ›› Microsoft Disables 73 GitHub Repos After Malware Breach

Microsoft Disables 73 GitHub Repos After Malware Breach

Microsoft has disabled 73 GitHub repositories after hackers used stolen credentials to plant malware. The breach affected multiple organizations, including Azure, and led to significant disruptions. Microsoft is investigating and has notified affected customers.

iG
iGEN Editorial
June 9, 2026
Microsoft Disables 73 GitHub Repos After Malware Breach

Microsoft has taken decisive action by disabling 73 of its GitHub repositories following a significant security breach. Hackers allegedly used stolen credentials to compromise these repositories, planting a dangerous malware known as the Miasma worm. This breach has notably impacted several GitHub organizations, including Azure, Azure-Samples, microsoft, and MicrosoftDocs.

The Breach and Its Impact

According to TechRadar, the breach was facilitated by the reuse of unrotated GitHub Actions secrets, which were initially stolen a month prior. The Miasma worm, a derivative of the Mini Shai-Hulud worm, was deployed across these repositories. This led to significant disruptions, particularly within the Azure organization, which saw 49 repositories affected. The breach halted workflows that relied on these repositories, such as those referencing Azure/functions-action@v1.

Microsoft's Response

In response to the breach, Microsoft has pulled the affected repositories and is conducting a thorough investigation. Ben Hope, a Microsoft spokesperson, stated that some repositories have been restored after review, while others remain offline. Microsoft has also notified a small number of customers who may have downloaded content from these compromised repositories. The company is committed to reaching out directly to customers if further actions are required.

Security Community Involvement

The breach was confirmed by security firm Cloudsmith and the community-driven malware analysis site OpenSourceMalware. These organizations highlighted the reuse of stolen credentials and the subsequent publication of malicious PyPI packages as key factors in the breach. The incident underscores the importance of rotating credentials and maintaining robust security practices to prevent such vulnerabilities.

Implications for the Industry

This incident serves as a stark reminder of the vulnerabilities inherent in software supply chains. For CTOs and technology leaders, it highlights the critical need for stringent security measures and regular audits of access credentials. The breach's impact on Azure, a major cloud platform, also emphasizes the potential widespread consequences of such security lapses.

Organization Repositories Affected
Azure 49
Azure-Samples Multiple
microsoft Multiple
MicrosoftDocs Multiple

The ongoing investigation by Microsoft and the involvement of security firms like Cloudsmith demonstrate the collaborative effort required to address and mitigate such cybersecurity threats effectively.


Sources: TechRadar – Main Feed

Keep Reading

Recommended Stories