Mini Shai-Hulud Is Back: 172 npm and PyPI Packages Compromised in Latest Wave
PhantomRaven Wave 5: New Undocumented NPM Supply Chain Campaign Targets DeFi, Cloud, and AI Developers
Shai-Hulud Strikes SAP: Supply Chain Worm Weaponized Claude Code to Compromise the CAP Framework
The Butlerian Jihad: Compromised Bitwarden CLI Deploys npm Worm, Poisons AI Assistants, and Dumps GitHub Secrets
Poisoned Axios: npm Account Takeover, 50 Million Downloads, and a RAT That Vanishes After Install
CanisterWorm: The Self-Spreading npm Attack That Uses a Decentralized Server to Stay Alive
From Zero to RCE: How a Single HTTP Request Compromises React and Next.js Applications
NPM Ecosystem Under Siege: Self-Propagating Malware Compromises 187 Packages in a Huge Supply Chain Attack