Cremit
/incidentsfield log
CatchesCampaignsExfilPatternsLLMIncidentsMethodology
↺rss↗cremit.io

incidents.cremit.io

A reference feed of real-world Non-Human Identity (NHI) credential leak incidents. Maintained by Cremit.

Browse

  • All incidents
  • npm supply chain
  • CI/CD compromise
  • Methodology

Subscribe

  • RSS feed
  • @cremit_io
  • GitHub
// status
monitor active
// build
2026-05-20
// origin
cremit · seoul, kr
// license
CC BY 4.0

© 2026 Cremit. content reuse encouraged with attribution.

home/platforms/npm

// platform

npm incidents

Indexed Non-Human Identity credential leak incidents that affected npm. Sorted by disclosure date.

9 incidents indexed

  • 2026-05-19·CRITICAL9.4·confirmed

    AntV npm Account Compromise: Mini Shai-Hulud Wave Hits 323 Packages (May 2026)

    On 2026-05-19 the @antv npm publisher session was used to ship 639 malicious versions across 323 packages, the Mini Shai-Hulud campaign now totals 1,055 versions across 502 packages.

    vector / npm supply chainplatforms / npm, GitHub, AWS, +2read / 22 min
  • 2026-05-12·CRITICAL9.5·confirmed

    Mini Shai-Hulud npm Worm: TanStack, UiPath, Mistral AI and 169 Packages Compromised (May 2026)

    npm worm hit 373 versions across 169 packages (@tanstack, @squawk, @uipath, mistralai) via trusted-publishing OIDC abuse and a prepare-script git dep that exfiltrates cloud and registry secrets at install.

    vector / npm supply chainplatforms / npm, GitHub, AWSread / 10 min
  • 2026-05-04·HIGH7.5·confirmed

    microsop npm Cluster: Dependency-Confusion Campaign Targeting Apple Internal CI/CD (2026)

    npm publisher microsop pushed 36 versions across 6 Apple-themed packages between May 4–11, 2026, fingerprinting Apple internal CI and exfiltrating npmrc, env vars, and git origin to 12 rotating webhook.site endpoints.

    vector / Dependency confusionplatforms / npmread / 7 min
  • 2026-04-22·CRITICAL9.0·confirmed

    Bitwarden CLI Supply Chain Compromise (2026)

    A malicious build of @bitwarden/cli was published to the public npm registry for roughly 90 minutes, exfiltrating cloud tokens, SSH keys, and AI tooling credentials from CI runners and developer machines.

    vector / npm supply chainplatforms / npm, GitHub, Bitwarden, +3read / 6 min
  • 2024-12-03·CRITICAL8.4·confirmed

    @solana/web3.js Private Key Exfiltration (2024)

    Compromised maintainer publish credentials were used to push two malicious versions of the official @solana/web3.js npm package, embedding a routine that exfiltrated private keys from any wallet using the SDK.

    vector / npm supply chainplatforms / npmread / 5 min
  • 2021-11-04·CRITICAL8.7·confirmed

    rc and coa Coordinated npm Account Takeover (2021)

    Two long-unmaintained npm packages — rc and coa, with combined weekly downloads in the tens of millions — were hijacked the same day and shipped credential-harvesting payloads matching ua-parser-js.

    vector / npm supply chainplatforms / npmread / 5 min
  • 2021-10-22·CRITICAL8.8·confirmed

    ua-parser-js npm Account Compromise (2021)

    An attacker took over the maintainer account of ua-parser-js — a package with ~7M weekly downloads — and shipped versions containing a credential stealer (Windows) and a cryptominer (Linux).

    vector / npm supply chainplatforms / npmread / 5 min
  • 2018-11-26·HIGH7.4·confirmed

    event-stream / flatmap-stream Backdoor (2018)

    A new maintainer of the popular event-stream npm package added a malicious sub-dependency, flatmap-stream, that exfiltrated cryptocurrency wallet seeds from Copay-derived applications.

    vector / npm supply chainplatforms / npmread / 4 min
  • 2018-07-12·HIGH7.6·confirmed

    eslint-scope npm Publish Token Theft (2018)

    An attacker stole an ESLint maintainer's npm credentials and published a malicious eslint-scope version that exfiltrated developer .npmrc tokens to a remote server.

    vector / npm supply chainplatforms / npmread / 4 min