credential-theft

Tag

Cards List
#credential-theft

Deadbugz: Currently Active MCP Supply-Chain Campaign

Lobsters Hottest · 2026-08-12 Cached

Pillar Security researchers detail Deadbugz, an active supply-chain campaign that distributes a malicious MCP server through GitHub pull requests, gating credential-stealing instructions behind three benign tool calls.

0 favorites 0 likes
#credential-theft

Keyv and friends compromised in active Shai-Hulud supply chain attack

Hacker News Top · 2026-08-04 Cached

Attackers compromised the GitHub account of the maintainer behind keyv and related npm caching libraries, injecting a credential-stealing worm across multiple packages with over 2 billion combined monthly installs.

0 favorites 0 likes
#credential-theft

@Docker: The malware didn't bring its own credential scanner. It borrowed yours. In this AI Coding Agent Horror Stories issue: @…

X AI KOLs Timeline · 2026-07-28 Cached

A malicious npm package (s1ngularity) exploited post-install hooks to repurpose installed AI coding agents as credential scanners, stealing secrets from developers. Docker's blog discusses how Docker Sandboxes can mitigate such attacks by isolating credentials from agent reach.

0 favorites 0 likes
#credential-theft

The AI Workspace Hijack: Anatomy of the Jscrambler NPM Attack

Reddit r/artificial · 2026-07-13

Attackers hijacked Jscrambler's NPM credentials to release malicious versions that steal API keys and developer history from AI tools like Cursor and Claude Desktop using an undocumented Rust-based infostealer.

0 favorites 0 likes
#credential-theft

@AYi_AInotes: Damn, Theo’s warning today gave me chills. He said, hope you understand, this is only going to get worse, because the ongoing Mini Shai-Hulud supply chain attack has already spread from TanStack to UiPath, Mistral AI related packages, totaling 205 compromised artifacts...

X AI KOLs Timeline · 2026-05-12

This article warns about the ongoing Mini Shai-Hulud supply chain attack, which has spread from TanStack to UiPath, Mistral AI, etc., with a total of 205 artifacts poisoned. Attackers used CI/CD cache poisoning; malicious packages have legitimate signatures and provenance, rendering traditional security measures ineffective. AI has accelerated the attack speed, and developers' AI tools have become parasitic targets.

0 favorites 0 likes
#credential-theft

@tan_stack: SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions tota…

X AI KOLs Following · 2026-05-11 Cached

A high-severity supply-chain compromise affected 42 TanStack npm packages, exfiltrating cloud credentials and SSH keys. Users are advised to rotate credentials and reinstall from clean lockfiles if they installed packages during the attack window.

0 favorites 0 likes
#credential-theft

Anthropic Claude Code Leak Reveals Critical Command Injection Vulnerabilities

Lobsters Hottest · 2026-04-19 Cached

Critical command injection vulnerabilities (CVE-2026-35022, CVSS 9.8) discovered in Anthropic's Claude Code CLI and SDK allow attackers to execute arbitrary commands and steal credentials through environment variables, file paths, and authentication helpers. The flaws enable poisoned pipeline execution attacks in CI/CD environments, requiring immediate patching and configuration changes.

0 favorites 0 likes
← Back to home

Submit Feedback