Mini Shai Hulud: Compromised @antv npm Packages Enable CI/CD Credential Theft

Mini Shai Hulud: Compromised @antv npm Packages Enable CI/CD Credential Theft

Why This Matters Now: In December 2023, Microsoft reported a significant security incident involving compromised npm packages under the @antv scope. These packages were used to steal CI/CD credentials, posing a severe threat to software supply chains. The recent surge in such attacks highlights the critical importance of maintaining secure dependency management practices. 🚨 Breaking: Over 100,000 projects potentially exposed due to compromised @antv npm packages. Audit your dependencies and rotate your CI/CD credentials immediately. 100K+Projects Exposed 24hrsTime to Act Understanding the Attack Timeline December 10, 2023 Initial discovery of compromised packages. ...

Jul 20, 2026 · 3 min · 609 words · IAMDevBox