Related Threat Clusters
-
North Korean Hackers Target Open Source Software Supply Chain via npm Packages
Amazon's threat intelligence has linked a series of compromises of popular npm packages—axios, debug, chalk, and typo-crypto—to a North Korean hacking group known as Sapphire Sleet. The group employed social engineering…
11 articles · Updated July 29, 2026 -
CrowdStrike Launches Endpoint Protection Against Supply Chain Attacks
CrowdStrike has introduced Real-Time Supply Chain Attack Protection to combat software supply chain attacks that increasingly target open-source packages. This new capability is designed to block malicious packages at…
7 articles · Updated September 2, 2026 -
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
753 articles · Updated April 29, 2026 -
GitHub Breach: 3,800 Internal Repositories Compromised via Malicious VS Code Extension
On May 20, 2026, GitHub confirmed a significant security breach involving a poisoned Visual Studio Code (VS Code) extension that compromised an employee's device. The attack, attributed to the TeamPCP hacking group,…
149 articles · Updated May 20, 2026 -
CrowdStrike Identifies Three Splinter Groups from LABYRINTH CHOLLIMA
CrowdStrike has reclassified the North Korea-linked intrusion set LABYRINTH CHOLLIMA into three distinct units: GOLDEN CHOLLIMA and PRESSURE CHOLLIMA, which focus on cryptocurrency theft, and the core LABYRINTH CHOLLIMA…
6 articles · Updated January 30, 2026
Recent Intelligence Reports
- CrowdStrike Launches Real-Time Supply Chain Attack Protection — Itvoice.In · September 3, 2026
- CrowdStrike moves to block compromised open-source packages before they execute — Cyberdaily.Au · September 3, 2026
- CrowdStrike Extends Endpoint Security to Stop Software Supply Chain Attacks — Crowdstrike · September 2, 2026
- Amazon links Debug, Chalk NPM supply — Bleepingcomputer · July 30, 2026
- Amazon pins multiple open source compromises on North Korea — Computerweekly · July 30, 2026
- A little-known npm package was North Korea’s warm — Cyberscoop · July 29, 2026
- Amazon identifies North Korean hacker group behind open — Aws.Amazon · July 29, 2026
- Microsoft Attributes Mastra AI Supply Chain Attack to North Korea — Infosecurity-Magazine · June 22, 2026