keyv npm supply chain attack on August 4, 2026 let the Shai-Hulud worm compromise 400-plus packages and more than two billion ...
Malicious npm packages impersonate Alibaba tools to deliver a cross-platform RAT with command execution, persistence, and ...
A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems ...
A massive supply chain attack on the Node Package Manager (npm) registry has infected over 400 packages with over 2 billion downloads with the ...
The Shai Hulud variant’s blast radius includes several highly popular packages thus far.. Security teams are urged to perform ...
Aikido Security says an npm supply chain attack has infected Keyv packages with a variant of the credential-stealing ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results