Mini Shai Hulud: Compromised @antv npm Packages Enable CI/CD Credential Theft

Mini Shai Hulud: Compromised @antv npm Packages Enable CI/CD Credential Theft

Why This Matters Now: In December 2023, Microsoft reported a significant security incident involving compromised npm packages under the @antv scope. These packages were used to steal CI/CD credentials, posing a severe threat to software supply chains. The recent surge in such attacks highlights the critical importance of maintaining secure dependency management practices. 馃毃 Breaking: Over 100,000 projects potentially exposed due to compromised @antv npm packages. Audit your dependencies and rotate your CI/CD credentials immediately. 100K+Projects Exposed 24hrsTime to Act Understanding the Attack Timeline December 10, 2023 Initial discovery of compromised packages. ...

Jul 20, 2026 路 3 min 路 609 words 路 IAMDevBox
Axios Hijacked: npm Account Takeover Deploys Cross-Platform RAT to Millions

Axios Hijacked: npm Account Takeover Deploys Cross-Platform RAT to Millions

Why This Matters Now The recent Axios npm package hijacking is a stark reminder of the vulnerabilities in our software supply chains. On December 14, 2023, attackers took control of the Axios npm account and published a malicious version of the package. This compromised version included a cross-platform remote access trojan (RAT), which could have given attackers full control over the systems of anyone who installed the package. The incident highlights the critical importance of securing npm accounts and maintaining vigilant dependency management practices. ...

Apr 04, 2026 路 5 min 路 1020 words 路 IAMDevBox