Application Security Axios NPM Package Breached in North Korean Supply Chain Attack A long-lived NPM access token was used to bypass the GitHub Actions OIDC-based CI/CD publishing workflow and push backdoored package versions. Ionut ArghireApril 1, 2026
Application Security TeamPCP Moves From OSS to AWS Environments After validating stolen credentials using TruffleHog, the hacking group started AWS services enumeration and lateral movement activities. Ionut ArghireMarch 31, 2026
Malware & Threats Telnyx Targeted in Growing TeamPCP Supply Chain Attack Two malicious versions of the popular SDK were uploaded to the PyPI registry, targeting Windows, macOS, and Linux. Ionut ArghireMarch 30, 2026
Application Security From Trivy to Broad OSS Compromise: TeamPCP Hits Docker Hub, VS Code, PyPI The hackers compromised GitHub Action tags, then shifted to NPM, Docker Hub, VS Code, and PyPI, and teamed with Lapsus$. Ionut ArghireMarch 25, 2026
Supply Chain Security Aqua’s Trivy Vulnerability Scanner Hit by Supply Chain Attack Hackers published a malicious scanner release and replaced tags to point to information-stealer malware. Ionut ArghireMarch 23, 2026
Malware & Threats New ‘Sandworm_Mode’ Supply Chain Attack Hits NPM The malicious code propagates like a worm, poisons AI assistants, exfiltrates secrets, and contains a destructive dead switch. Ionut ArghireFebruary 24, 2026
Nation-State Taiwan Security Firm Confirms Flaw Flagged by CISA Likely Exploited by Chinese APTs The vulnerability in TeamT5 ThreatSonar Anti-Ransomware was recently added to CISA’s KEV catalog. Eduard KovacsFebruary 24, 2026
Artificial Intelligence Autonomous AI Agents Provide New Class of Supply Chain Attack While this campaign targets crypto wallets and steals money, the methodology has far wider potential that could be used by other attackers. Kevin TownsendFebruary 23, 2026
Supply Chain Security Notepad++ Supply Chain Hack Conducted by China via Hosting Provider The likely state-sponsored threat actor had access to the hosting provider for months and targeted only certain Notepad++ customers. Eduard KovacsFebruary 2, 2026
Malware & Threats eScan Antivirus Delivers Malware in Supply Chain Attack Hackers compromised a MicroWorld Technologies update server and fed a malicious file to eScan customers. Ionut ArghireJanuary 31, 2026
Supply Chain Security ‘PackageGate’ Flaws Open JavaScript Ecosystem to Supply Chain Attacks The protections against NPM supply chain attacks could be bypassed, leading to arbitrary code execution. Ionut ArghireJanuary 27, 2026
Application Security Shai-Hulud Supply Chain Attack Led to $8.5 Million Trust Wallet Heist The worm exposed Trust Wallet’s Developer GitHub secrets, allowing attackers to publish a backdoor extension and steal funds from 2,520 wallets. Ionut ArghireDecember 31, 2025
Malware & Threats Infostealer Malware Delivered in EmEditor Supply Chain Attack The ‘download’ button on the official EmEditor website served a malicious installer. Eduard KovacsDecember 29, 2025