Mini Shai-Hulud: Cross-Ecosystem Supply Chain Attack Hits npm, PyPI, and Packagist

Date Observed: April 29–30, 2026Ecosystem: npm, PyPI, Packagist (PHP)Targets: SAP enterprise developers, AI/ML engineers, DevOps and DevSecOps teams using Intercom SDKsAttack Type: Supply chain compromise via stolen and abused CI/CD publishing credentials; preinstall hook injection; cross-ecosystem worm self-propagationImpact: Eight confirmed compromised package versions across three ecosystems; multi-cloud credential theft (GitHub, AWS, GCP, Azure); IDE persistence […]
Bitwarden CLI npm Compromise: Bun-Staged Credential Stealer

Date Observed: April 23, 2026 Ecosystem: npm (Node.js) Targets: Developer workstations, GitHub Actions CI/CD pipelines, cloud environments, AI coding tool configurations Attack Type: Supply chain compromise: account hijack, OIDC Trusted Publishing abuse, malicious preinstall hook Impact: SSH keys, GitHub/npm tokens, AWS/GCP/Azure credentials, AI tool configs, and Actions secrets exfiltrated; GitHub tokens weaponized to inject malicious […]
xinference PyPI Compromise: TeamPCP-Style Credential Stealer

Date Observed: April 22, 2026Ecosystem: PyPI (Python)Targets: AI/MLOps teams, CI/CD pipelines, cloud-connected LLM inference environmentsAttack Type: Supply chain compromiseImpact: SSH keys, AWS/GCP/Azure/Kubernetes credentials, .env secrets, and CI/CD tokens exfiltrated to attacker-controlled infrastructure Key Takeaways On April 22, 2026, three consecutive releases of xinference versions 2.6.0, 2.6.1, and 2.6.2 were confirmed to carry a malicious two-stage […]
Axios npm Compromise: Maintainer Account Hijacked for RAT Delivery

Axios npm Compromise: North Korea-Linked Threat Actor Poisons Popular HTTP Client Date Observed: March–April 2026 Ecosystem: npm, Node.js, CI/CD pipelines Targets: Axios npm package consumers: 100M+ weekly downloads across JavaScript and Node.js build environments Attack Type: Maintainer account compromise, malicious package publish, cross-platform RAT delivery Key Takeaways Axios is one of the most widely used […]
TeamPCP: How a Supply Chain Attack Hit Build Systems and CI/CD Pipelines

TeamPCP Supply Chain Campaign: CI/CD Pipeline Attacks Targeting Trivy, KICS, and LiteLLM Date Observed: March 2026Ecosystem: GitHub Actions, npm, PyPITargets: Aqua Security Trivy, Checkmarx KICS, BerriAI LiteLLMAttack Type: Supply chain compromise, mutable tag hijacking, CI/CD credential theft, self-propagating worm, PyPI wheel backdoor Key Takeaways: TeamPCP is a threat actor behind a coordinated 2026 supply chain […]
GlassWorm: Invisible-Code Supply Chain Worm Attack

GlassWorm: The Invisible Unicode Supply Chain Worm Targeting CI/CD Pipelines Date Observed: October 2025 – ongoing (March 2026) Ecosystem: VS Code/OpenVSX extensions, npm packages, GitHub repositories Attack Type: Stealthy supply-chain compromise → hidden payload execution → credential theft → lateral spread Key Takeaways: GlassWorm is a highly stealthy supply-chain malware campaign that emerged in October […]
SANDWORM_MODE: How a Shai-Hulud-Style npm Worm Targets CI/CD Pipelines

SANDWORM_MODE: A New Wave of npm Supply Chain Attacks Targeting CI/CD Pipelines Date of Discovery: February 20, 2026Ecosystem: npmType of Attack: Credential theft + AI tool compromise + worm propagationScope: At least 19 typo-squatted npm packagesImpact: Credential theft, GitHub Actions abuse, MCP injection, multi-channel exfiltration, and destructive fallback capability A coordinated supply chain attack targeted […]
Hackerbot-Claw: AI-Driven Pull Request Exploits in GitHub Actions CI/CD

Hackerbot-Claw: AI-Driven Pull Request Exploits in GitHub Actions CI/CD Date Observed: Late February 2026 Ecosystem: GitHub Actions CI/CD Attack Type: Pull-request triggered workflow exploitation → Remote Code Execution (RCE) → Token theft Key Takeaways: A recent campaign attributed to the GitHub account “Hackerbot-Claw” targeted open-source repositories by exploiting misconfigured GitHub Actions workflows. Public reporting indicates […]
The ‘s1ngularity’ Attack: Weaponizing AI CLI Tools and How InvisiRisk Stops It

The nx “s1ngularity” Attack: Weaponizing AI CLI Tools and How InvisiRisk Stops It Date of Attack: August 26, 2025 Impact: Credentials were stolen from over 1,400 build systems affecting over 300 organizations The software supply chain is once again in the spotlight following the compromise of the popular nx build system on the NPM registry. […]
Shai-Hulud NPM Worm Attack: Overview and InvisiRisk Protection

Shai-Hulud NPM Worm Attack: Overview and InvisiRisk Protection A novel self-propagating malware strain dubbed the Shai-Hulud worm has recently infected hundreds of JavaScript (NPM) packages. Security researchers report that at least 187 NPM packages are known to have been compromised and the damage caused by this threat is suspected of impacting more than 500 packages […]