Skip to main content
Scour
Discover
Docs
Login
Sign Up
You are offline. Trying to reconnect...
Copied to clipboard
Unable to share or copy to clipboard
Back to article
Microsoft Security Blog
4w
4 weeks ago
Mini Shai Hulud: Compromised @antv npm packages enable CI/CD credential theft
(opens in new tab)
Covers
Active Supply Chain Attack Compromises @antv Packages on npm
Covered by
4 sources
See all sources covering this story
including
DEV Community
,
This Week In 4n6
Love
Like
Not for me
Save
|
|
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Covers 1 related story
Socket
·
5w
5 weeks ago
Active Supply Chain Attack Compromises @antv Packages on npm
Discussed on
Hacker News
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Active Supply Chain Attack Compromises @antv Packages on npm
Covered in 4 articles
DEV Community
·
3w
3 weeks ago
The New Shape of Supply-Chain Trust
Discussed on
DEV
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for The New Shape of Supply-Chain Trust
This Week In 4n6
·
4w
4 weeks ago
Week 21
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for Week 21
BadCyber
·
3w
3 weeks ago
IT Security Weekend Catch Up
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for IT Security Weekend Catch Up
SOCRadar® Cyber Intelligence Inc.
·
1w
1 week ago
May 2026: TeamPCP’s Supply Chain Blitz Hits Checkmarx, GitHub, and npm
Love
Like
Not for me
Save
See related topics
Feeds
Share
Report
Off Topic
Harmful Content
Low Quality
Spam
Misleading
Duplicate
Wrong Language
Block Domain
Actions for May 2026: TeamPCP’s Supply Chain Blitz Hits Checkmarx, GitHub, and npm
Keyboard Shortcuts
Navigation
Next / previous post
j
/
k
Open post
o
or
Enter
Preview post
v
Post Actions
Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s
Recommendations
Add interest / feed
Enter
Not interested
x
Go to
Home
g
h
Interests
g
i
Feeds
g
f
Likes
g
l
History
g
y
Changelog
g
c
Settings
g
s
Discover
g
b
Search
/
Pagination
Next page
n
Previous page
p
General
Show this help
?
Submit feedback
!
Close modal / unfocus
Esc
Press
?
anytime to show this help
Like
Save
Not for me
Report