Skip to content
AI IntelligenceJun 29, 2026AI Intelligence
Article

Security researchers at Mozilla show how a compromised GitHub repo can execute malware via Claude Code without developer verification.

The malicious code loads at runtime through a DNS query, remaining invisible.

Data Cube AI EditorialSource: The Decoder
01

Source Brief

Security researchers at Mozilla show how a compromised GitHub repo can execute malware via Claude Code without developer verification. The malicious code loads at runtime through a DNS query, remaining invisible.