A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots
CrowdStrike says it has found a worm being used in attacks on the AI software supply chain, highlighting how criminals are shifting towards AI development infrastructure as these tools become more central to software engineering. The malware is designed to steal credentials, expand access inside target environments, extract sensitive data and, in some cases, damage systems, while blending in with normal automated development activity. That matters because AI coding agents and related tooling are increasingly trusted across software pipelines, creating new opportunities for attackers to abuse those relationships.
According to CrowdStrike, the worm operates in stages: it first surveys the environment, then searches for access tokens, cryptographic keys, server credentials and especially npm tokens that could open up broader development capabilities. As it gains more privileges, it can continue harvesting secrets and may trigger a destructive “death switch” to delete files or block legitimate access. Researchers say the hardest part of detection is that the malware closely imitates legitimate AI-driven automation and even uses delays of hours or days, reducing the useful telemetry defenders normally rely on; CrowdStrike has not attributed the campaign to a specific actor but says it fits a wider pattern of AI supply chain threats.
- CrowdStrike found a worm targeting AI development infrastructure.
- The malware steals credentials and can destroy compromised systems.
- Detection is difficult because it mimics normal AI automation.