Zapier is a organization tracked across 7 threat clusters and 21 intelligence report mentions on ThreatCluster. First observed November 24, 2025; most recent activity May 29, 2026.
Zapier is a widely used SaaS workflow automation platform that connects apps and automates tasks. The provided articles do not mention Zapier directly; however, they describe a major supply-chain intrusion (Shai-Hulud) targeting npm packages and GitHub repositories, highlighting how automation platforms and their customers can be affected by compromised dependencies, malicious packages, or repository breaches.
Cybercriminals are exploiting the n8n AI workflow automation platform to conduct phishing campaigns and deliver malware. Between October 2025 and March 2026, there was a 686% increase in phishing emails utilizing…
The Shai Hulud worm has compromised more than 26,000 public repositories in a supply chain attack. The attack targeted various npm packages, exploiting vulnerabilities that allowed unauthorized access to these…
Researchers at Token Security disclosed a five-stage exploit chain that allowed a free Zapier account to gain write access to both public and internal NPM packages. Each stage of the chain exploited known anti-patterns,…
The Shai-Hulud malware has re-emerged, infecting over 500 trojanized npm packages and compromising secrets from more than 25,000 developers within three days. The malicious packages, including those from popular…
A new wave of the Shai-Hulud malware has compromised nearly 500 npm packages, affecting over 26,000 GitHub repositories. This self-replicating worm, which targets developers' credentials and secrets, has been linked to…
Zapier's NPM account was compromised, leading to multiple packages being infected with malware. The incident has raised alarms about the security of third-party packages in the Node.js ecosystem. Users of the affected…
Zapier's NPM account was hacked, leading to multiple packages being infected with malware. The incident has raised concerns about the security of third-party packages in the NPM ecosystem, affecting users who rely on…