Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Snyk: Removing Malware with GitHub Token Deadman Switch

Snyk
06/18/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


service that monitors whether your stolen github token has been revoked. On Linux it registers as a systemd user service. On macOS it registers as a launch agent. If it detects the token was revoked, it destroys your home directory. So you want to disable the monitor service first, then rotate credentials second, in that order. You can see how to disable the monitor service for your respective operating system on screen here, or you can check for more details in the blog shared in the description below. After the deadman switch is gone, remove the editor persistent hooks. The worm writes itself into two places, your Claude code project settings, and your VS code workspace tasks. Both are designed to re-execute the payload every time you open up either tool. Also, check for deaddrop commits authored under the fake identity the attacker used, which was a claude at no reply dot github dot com type of address. That email is the attacker impersonating the anthropic claude github app. Any commits from that identity in your repo are likely malicious. And with that, you have neutralized the persistence mechanism of this attack. You can safely move on to handling your credentials now.

TL;DR

  • Malware installs a deadman switch that destroys your home directory if it detects GitHub token revocation, making remediation order critical for data safety
  • First disable the monitor service (systemd on Linux, launch agent on macOS), then rotate credentials second to prevent triggering the destructive payload
  • Remove persistence mechanisms from Claude Code project settings and VS Code workspace tasks, and check for malicious commits from claude@noreply.github.com identity

Summary

This security advisory provides critical remediation steps for a sophisticated malware attack targeting developers through VS Code and Claude Code editors. The malware installs a deadman switch mechanism that monitors stolen GitHub tokens and destroys the user's home directory if token revocation is detected. The attack establishes persistence through systemd services on Linux, launch agents on macOS, and editor hooks in both Claude Code project settings and VS Code workspace tasks. Remediation must follow a specific sequence: first disable the monitoring service, then rotate credentials, remove editor hooks, and finally check for malicious commits authored under a fake Anthropic identity. The video emphasizes that following the correct order is essential to prevent data loss during the cleanup process.

Chapters

0:00 - Understanding the Deadman Switch
0:16 - Correct Remediation Order
0:30 - Removing Editor Persistence Hooks
0:43 - Identifying Malicious Commits

Key Quotes

0:00 "... remediation order is not optional. The malware installs a deadman switch, basically a background service that monitors whether your stolen GitHub token has been revoked."
0:16 "If it detects the token was revoked, it destroys your home directory. So you want to disable the monitor service first, then rotate credentials second, in that order."
0:48 "That email is the attacker impersonating the Anthropic claude GitHub app. Any commits from that identity in your repo are likely malicious."

FAQ

Why can't I just revoke my GitHub token immediately if it's been stolen?

The malware includes a deadman switch that monitors whether your token has been revoked. If it detects revocation before you disable the monitoring service, it will destroy your home directory. You must disable the monitor service first, then rotate credentials second.


Categories:
  • » Cybersecurity » Application Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Application Security
  • DevSecOps
  • Threat Intelligence
  • How-To
  • malware remediation
  • GitHub token security
  • VS Code security
  • Claude Code security
  • deadman switch attacks
  • persistence mechanisms
  • developer security
  • credential rotation
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Snyk: Removing Malware with GitHub Token Deadman Switch

              Industry Events (Sponsor Hosted)

              • Aug
                03

                Discover DLP Memories: The ever-evolving triage agent enhancing efficiency each shift.

                08/03/202611:00 AM ET
                • Aug
                  06

                  Safeguarding Sensitive Data in the Age of AI Platforms

                  08/06/202604:00 AM ET
                  • Aug
                    06

                    AI Agents Revolutionizing Identity Attacks: Same Tactics, Enhanced Speed

                    08/06/202602:00 PM ET
                    More events

                    Upcoming Webinar Calendar

                    • 08/03/2026
                      11:00 AM
                      08/03/2026
                      Discover DLP Memories: The ever-evolving triage agent enhancing efficiency each shift.
                      https://www.truthinit.com/index.php/channel/2062/discover-dlp-memories-the-ever-evolving-triage-agent-enhancing-efficiency-each-shift/
                    • 08/06/2026
                      04:00 AM
                      08/06/2026
                      Safeguarding Sensitive Data in the Age of AI Platforms
                      https://www.truthinit.com/index.php/channel/2058/safeguarding-sensitive-data-in-the-age-of-ai-platforms/
                    • 08/06/2026
                      02:00 PM
                      08/06/2026
                      AI Agents Revolutionizing Identity Attacks: Same Tactics, Enhanced Speed
                      https://www.truthinit.com/index.php/channel/2064/ai-agents-revolutionizing-identity-attacks-same-tactics-enhanced-speed/
                    • 08/13/2026
                      12:00 PM
                      08/13/2026
                      Harnessing AI for Secure Innovation in the Enterprise with Netskope & Omada
                      https://www.truthinit.com/index.php/channel/2065/harnessing-ai-for-secure-innovation-in-the-enterprise-with-netskope-omada/
                    • 08/19/2026
                      12:00 PM
                      08/19/2026
                      Becoming Agent Ready: Insights and Strategies with Cyera
                      https://www.truthinit.com/index.php/channel/2036/becoming-agent-ready-insights-and-strategies-with-cyera/
                    • 09/02/2026
                      12:00 PM
                      09/02/2026
                      Unified Data Security in Action: Uncover, Analyze, and Resolve Threats
                      https://www.truthinit.com/index.php/channel/2045/unified-data-security-in-action-uncover-analyze-and-resolve-threats/
                    • 09/30/2026
                      04:00 AM
                      09/30/2026
                      AI Command Center: Optimizing Visibility and Control in Your Operations
                      https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version