UiPath — Cyber Attacks, Breaches & Threat Activity

Threat entity extracted from intelligence sources

Frequency
11
occurrences
First Seen
May 12, 2026
Last Seen
August 27, 2026

Related Threat Clusters

  • Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages

    A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…

    751 articles · Updated April 29, 2026
  • TeamPCP Hackers Arrested for Major Supply Chain Attacks

    On August 26, 2026, Australian Federal Police arrested two men, Ruben Thomson and Louis Gaebler, linked to the TeamPCP hacking group. This group is notorious for sophisticated supply chain attacks that compromised over…

    25 articles · Updated August 27, 2026
  • TeamPCP Exploits Trust in Open-Source Software and AI Tools

    In a span of four months, the threat actor TeamPCP has compromised over 1,000 open-source software packages, injecting malicious code and exploiting the trust developers place in these resources. The attack method…

    7 articles · Updated June 19, 2026
  • GitHub Breach Linked to Compromised Nx Console Extension

    On May 19, 2026, GitHub announced an investigation into unauthorized access to internal repositories after a malicious Visual Studio Code extension was executed on an employee's device. The attack, attributed to the…

    5 articles · Updated July 7, 2026
  • RubyGems Suspends New Signups Following Malicious Package Attack

    RubyGems has halted new user sign-ups after a malicious attack on May 11, 2026, which involved the publication of hundreds of malicious packages targeting its staff. The malicious code aimed to execute cross-site…

    6 articles · Updated May 13, 2026
  • OpenAI Faces Supply Chain Attack via TanStack npm Library

    OpenAI confirmed a security breach affecting two employee devices due to a supply chain attack linked to the TanStack npm library, part of a broader campaign called Mini Shai-Hulud. The attack involved the publication…

    39 articles · Updated May 14, 2026

Recent Intelligence Reports

  • Two alleged TeamPCP members arrested and charged after months of software supply — Cyberscoop · August 27, 2026
  • Link — edge.prnewswire.com · July 8, 2026
  • How software development’s speed obsession enabled TeamPCP’s chaos crusade — Cyberscoop · June 18, 2026
  • Hades PyPI Supply Chain Attack: 26 Packages Steal Cloud Credentials | Let's Data Science — Letsdatascience · June 11, 2026
  • The next big DeFi exploit will start before the code is deployed — Cryptorank · May 26, 2026
  • Shai-Hulud goes open-source — News.Risky.Biz · May 15, 2026
  • OpenAI confirms security breach in TanStack supply chain attack — Bleepingcomputer · May 14, 2026
  • OpenAI denies user data exposure from TanStack npm, Mini Shai — Cryptopolitan · May 14, 2026

CVSS v3.1 Breakdown