Cloud Threat Landscape
  • Incidents
  • Actors
  • Techniques
  • Defenses
  • Tools
  • Targeted Technologies
  • Posters & Newspapers
  • About
  • RSS
  • STIX
  • Back to wiz.io

Made with 💙 by Wiz

Last Updated: April 3, 2025

Cloud Threat Landscape
/Techniques
Techniques
/
Publishing trojanized npm packages

Publishing trojanized npm packages

Tags
Incidents
Shai-Hulud 2.0 Supply Chain AttackSANDWORM_MODE: Typosquatted npm Packages Used to Hijack CI WorkflowsAxios supply chain attackLiteLLM supply chain attackKICS supply chain attack
Last edited
Nov 30, 2025 2:51 PM
Status
Not started