National Cyber Warfare Foundation (NCWF)

SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack


0 user ratings
2026-04-29 17:44:07
milo
Blue Team (CND)
Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware.
According to reports from Aikido Security, SafeDep, Socket, StepSecurity, and Google-owned Wiz, the campaign – calling itself the mini Shai-Hulud – has affected the following packages associated with SAP's JavaScript and cloud application



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/04/sap-npm-packages-compromised-by-mini.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.