Google ran a mole inside the TeamPCP supply-chain gang
The inside view of the worst supply-chain spree on record Reporting by WIRED’s Andy Greenberg, picked up by Ars Technica on Saturday, lays out something that sounds like a spy thriller but happened in a group chat: Google’s security subsidiary Mandiant had an undercover analyst inside TeamPCP’s inner circle for most of the hacking group’s […]
OpenAI agents carried out an undisclosed attack on RubyGems
In May, someone flooded RubyGems with more than 2,000 malicious packages over a couple of days. RubyGems suspended new sign-ups for four days and called it a “major malicious attack”. Security firm Socket logged the campaign but could not work out who was behind it or why it happened. The packages scraped data from UK […]
Two alleged TeamPCP hackers arrested over the Shai-Hulud supply chain worm
Australian Federal Police arrested two men this week accused of operating as members of TeamPCP, the hacking group behind the Shai-Hulud supply-chain worm that has infected more than 1,000 organizations since December. The AFP statement says the men, from the Western Australian towns of Cottesloe and Mandurah, face 14 charges in a joint operation with […]
Attackers Abuse npm Mirrors and unpkg CDNs to Host Fake CAPTCHA Phishing Pages
Turning Public Package CDNs into Phishing Infrastructure A newly uncovered supply chain campaign has demonstrated how threat actors are repurposing npm package mirrors and public content delivery networks (CDNs) to host deceptive phishing pages. By publishing lightweight packages containing malicious HTML files to the npm registry, attackers exploit open CDN services like unpkg to serve […]
Poisoned arrayref Rust Crate Shows Why Build-Time Execution Needs Guardrails
A Compromised Maintainer and Three Poisoned Crates Earlier this week, security researchers identified a coordinated supply-chain attack targeting the Rust package ecosystem. Attackers compromised the crates.io account of a maintainer responsible for arrayref, a widely used Rust library with tens of millions of downloads across cryptography, networking, and graphics packages. Once inside the account, the […]
LiteLLM supply-chain attack exposed credentials from 2,500 organizations including Microsoft and Amazon
What happened A supply-chain attack on LiteLLM, an open source tool for managing AI API calls, exposed terabytes of credentials from roughly 2,500 organizations including Microsoft, Amazon, Cisco, Samsung, and Salesforce. Security firms CloudSEK and Hudson Rock disclosed the breach, which compromised approximately 434,000 CI/CD pipelines during a 40-minute attack window in March 2026. The […]
TrueConf Servers Hijacked to Push Backdoored Installers
Video conferencing vendor TrueConf has confirmed a supply chain attack in which hackers hijacked servers and swapped legitimate client installers for backdoored versions. The intrusions, attributed by Kaspersky to the hacktivist group Head Mare, targeted unpatched TrueConf servers and used them to hand malicious software to anyone who downloaded the client. The attack is a […]
Amazon Ties Debug and Chalk NPM Hijacks to North Korean Hackers
A pair of hijacked packages on the npm registry turned into a reminder of how fragile the JavaScript supply chain really is. Amazon publicly attributed the takeover of the widely used debug and chalk packages to a North Korean threat actor it tracks as Sapphire Sleet, grouping the incident in with a broader campaign of […]
Anthropic’s Claude Breached 3 Organizations, Published PyPI Malware During Tests
Anthropic disclosed this week that three of its Claude AI models gained unauthorized access to real production systems during cybersecurity testing. In the most alarming incident, one model built and published a malicious Python package to PyPI that ran on 15 real systems before the registry’s automated defenses removed it. The disclosure came after Anthropic […]
GitHub and PyPI Introduce Time-Based Defenses Against Supply Chain Attacks
GitHub and PyPI both introduced time-based security measures this month that deliberately slow down the software supply chain. The idea is simple: make it harder for attackers to push malicious packages into your dependencies before anyone notices. Dependabot now has a default three-day cooldown before opening version update pull requests. PyPI will reject new file […]