Arch User Repository is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
Arch User Repository is a technology platform tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed June 11, 2026; most recent activity June 11, 2026.
A significant supply chain attack has compromised over 400 packages in the Arch User Repository (AUR), with attackers injecting malicious build scripts that deploy credential-stealing malware and rootkits. The campaign,…
Arch User Repository is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
The most recent intelligence report mentioning Arch User Repository on ThreatCluster is dated June 11, 2026.
Across ThreatCluster reporting, Arch User Repository most frequently co-occurs with Supply Chain Attack, Atomic Arch, T1003 - OS Credential Dumping, T1567 - Exfiltration Over Web Service, Arch Linux, among 12 tracked related entities.
The most significant recent cluster is “Over 400 Arch Linux AUR Packages Compromised in Supply Chain Attack” (26 articles · Updated June 12, 2026). Arch User Repository appears across 1 threat cluster in total, listed above with sources.
Arch User Repository appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.