#worm


IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks

Jun 5, 2026 // 23:42

Multiple software supply chain attacks have hit the npm ecosystem, with threat actors using both malicious and poisoned versions of over 50 legitimate packages to […]

Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm

Jun 1, 2026 // 22:14

A new Mini Shai-Hulud supply chain attack campaign, codenamed Miasma, has compromised @redhat-cloud-services packages to steal credentials and secrets from developer machines and deliver a […]

⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and More

May 18, 2026 // 18:10

Monday opens with a trust problem. A mail server flaw is under active use. A network control system was targeted. Trusted packages were poisoned. A […]

Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More Packages

May 12, 2026 // 11:52

TeamPCP,  the threat actor behind the recent supply chain attack spree, has been linked to the compromise of the npm and PyPI packages from TanStack, […]

New PCPJack worm steals credentials, cleans TeamPCP infections

May 7, 2026 // 21:37

A new malware framework called PCPJack is stealing credentials from exposed cloud infrastructure while actively removing TeamPCP’s access to the systems. Among the targeted services […]

Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer Tokens

Apr 22, 2026 // 20:40

Cybersecurity researchers have flagged a fresh set of packages that have been compromised by bad actors to deliver a self-propagating worm that spreads through stolen […]

Trivy Hack: Docker Infostealer, Worm, & Kubernetes Wiper Deployed

Mar 23, 2026 // 11:33

Following the Trivy supply chain attack, security experts have detected harmful components spread via Docker Hub, indicating a widespread impact on development environments. The last […]

Trivy Flaw Sparks npm Worm: CanisterWorm Infects 47 Packages, Spreads Rapidly.

Mar 21, 2026 // 11:24

The individuals responsible for the supply chain attack on the Trivy scanner are believed to be launching additional attacks, compromising numerous npm packages with a […]

Wikipedia hit by self-spreading JavaScript worm that defaced pages.

Mar 6, 2026 // 00:09

On March 5, 2026, Wikipedia and its sister projects were placed in read-only mode for approximately two hours following a site-wide attack by a self-propagating JavaScript worm. The […]