PyTorch Lightning is a technology platform tracked across 3 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed April 30, 2026; most recent activity June 19, 2026.
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
The PyTorch Lightning framework, a widely used Python package, has been compromised in a supply chain attack that executes credential-stealing malware upon import. Versions 2.6.2 and 2.6.3 of the package have been…
In a span of four months, the threat actor TeamPCP has compromised over 1,000 open-source software packages, injecting malicious code and exploiting the trust developers place in these resources. The attack method…