Weaponizing AI Coding Agents for Malware in the Nx Malicious Package Security Incident
Source evidence cited by public records. This page shows where the source is used, its trust tier, and when it was last checked in the seed.
Records using this source
- Malicious Nx npm Packages Reportedly Weaponize AI Coding Agents for Data Exfiltration
event | 21 Sept 2025 | 82%
Malicious versions of the popular Nx monorepo tool and plugins were reportedly published to npm after attackers compromised its CI workflow. The malware's postinstall script reportedly harvested credentials and exfiltrated data, reportedly weaponizing local AI coding agents such as Claude Code, Gemini, and Amazon q. By invoking unsafe flags, it allegedly coerced the tools into scanning developer machines for sensitive files, marking one of the first known AI-assisted supply …