PackageGate is a vulnerability tracked by ThreatCluster, appearing in 2 threat clusters built from 2 intelligence report mentions.
PackageGate is a vulnerability tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed January 27, 2026; most recent activity January 28, 2026.
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
Koi researchers identified a set of vulnerabilities known as 'PackageGate' in NPM, PNPM, VLT, and Bun. These flaws allow attackers to bypass supply chain protections and execute malicious code, posing risks to users of…
PackageGate is a vulnerability tracked by ThreatCluster, appearing in 2 threat clusters built from 2 intelligence report mentions.
The most recent intelligence report mentioning PackageGate on ThreatCluster is dated January 28, 2026. Activity was first observed January 27, 2026, giving a tracked span from then to January 28, 2026.
Across ThreatCluster reporting, PackageGate most frequently co-occurs with Supply Chain Attack, Worm, Koi, Shai-hulud, GitHub, among 11 tracked related entities.
The most significant recent cluster is “Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages” (700 articles · Updated April 29, 2026). PackageGate appears across 2 threat clusters in total, listed above with sources.
PackageGate appears in 2 intelligence report mentions across 2 deduplicated threat clusters, aggregated from 17,000+ monitored sources.