« 2026

387 reports

2026-04-01 • Secu I

SECUI STIC analyzes an Axios supply-chain compromise in which attackers stole maintainer credentials and altered npm installation behavior so a malicious setup.js loader ran automatically when affected packages were installed. The loader used custom obfus…

#NPM #Axios
2026-04-01 • Hunt.io

Hunt.io traces the Axios npm compromise to a staged operation involving takeover of maintainer jasonsaayman's npm account, publication of malicious axios releases, and weaponization of [email protected] as a postinstall dropper. The dropper hid its st…

#TA444 #Bluenoroff #NPM #Axios #T1082 #T1070.004 #T1071.001 #T1195.002 #T1059.006 #T1027 #T1057 #T1547.001 #T1059.001 #T1036.005 #T1059.002 #T1055 #T1553.002