Related Threat Clusters
-
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
743 articles · Updated April 29, 2026 -
Dutch Authorities Dismantle 17 Million Device Botnet in Major Cybercrime Operation
Dutch police, in collaboration with the National Cyber Security Centre (NCSC), have dismantled a massive botnet comprising over 17 million infected devices. The operation involved seizing more than 200 servers located…
29 articles · Updated May 29, 2026 -
GitHub Breach: 3,800 Internal Repositories Compromised via Malicious VS Code Extension
On May 20, 2026, GitHub confirmed a significant security breach involving a poisoned Visual Studio Code (VS Code) extension that compromised an employee's device. The attack, attributed to the TeamPCP hacking group,…
149 articles · Updated May 20, 2026 -
Developer Machines Targeted in Surge of Supply Chain Attacks
In the past three months, developers have reported a seven-fold increase in vulnerabilities related to supply chain attacks. These attacks primarily target developer workstations, exploiting unmonitored systems and…
2 articles · Updated May 26, 2026 -
TanStack Considers Invitation-Only Pull Requests After Supply Chain Attack
The TanStack team is evaluating security measures following a supply chain attack that exploited a GitHub Actions misconfiguration. The Shai-Hulud worm, used by TeamPCP, triggered a pull request that executed malicious…
2 articles · Updated May 19, 2026 -
TeamPCP Exploits Trust in Open-Source Software and AI Tools
In a span of four months, the threat actor TeamPCP has compromised over 1,000 open-source software packages, injecting malicious code and exploiting the trust developers place in these resources. The attack method…
7 articles · Updated June 19, 2026 -
GitHub Breach Linked to Compromised Nx Console Extension
On May 19, 2026, GitHub announced an investigation into unauthorized access to internal repositories after a malicious Visual Studio Code extension was executed on an employee's device. The attack, attributed to the…
5 articles · Updated July 7, 2026 -
RubyGems Suspends New Signups Following Malicious Package Attack
RubyGems has halted new user sign-ups after a malicious attack on May 11, 2026, which involved the publication of hundreds of malicious packages targeting its staff. The malicious code aimed to execute cross-site…
6 articles · Updated May 13, 2026 -
OpenAI Faces Supply Chain Attack via TanStack npm Library
OpenAI confirmed a security breach affecting two employee devices due to a supply chain attack linked to the TanStack npm library, part of a broader campaign called Mini Shai-Hulud. The attack involved the publication…
39 articles · Updated May 14, 2026
Recent Intelligence Reports
- Link — edge.prnewswire.com · July 8, 2026
- How software development’s speed obsession enabled TeamPCP’s chaos crusade — Cyberscoop · June 18, 2026
- Hades PyPI Supply Chain Attack: 26 Packages Steal Cloud Credentials | Let's Data Science — Letsdatascience · June 11, 2026
- Risky Bulletin: Dutch police take down giant botnet of 17 million devices — News.Risky.Biz · May 29, 2026
- The next big DeFi exploit will start before the code is deployed — Cryptorank · May 26, 2026
- Some developers seeing 7-fold increase in supply chain compromises — Cybernews · May 26, 2026
- GitHub breached via poisoned VS Code extension, 3,800 repos stolen — Thenextweb · May 20, 2026
- GitHub confirms 3,800 internal repos stolen through poisoned VS Code extension as supply ... — Venturebeat · May 20, 2026