Supply Chain SecurityMini Shai-Hulud Hits AntV: 300+ Malicious npm Packages Published via Compromised Maintainer AccountMay 18, 2026
Supply Chain SecurityMalicious node-ipc versions published to npm in suspected maintainer account compromiseMay 15, 2026
Supply Chain SecurityTanStack Npm Packages Compromised Inside The Mini Shai Hulud Supply Chain AttackMay 11, 2026
Supply Chain Securitylightning PyPI Compromise: A Bun-Based Credential Stealer in PythonApril 30, 2026
Supply Chain Security"A Mini Shai-Hulud Has Appeared": Bun-Based Stealer Hits SAP @cap-js and mbt npm PackagesApril 29, 2026
Supply Chain SecurityMalicious Release of elementary-data PyPI Package Steals Cloud Credentials from Data EngineersApril 27, 2026
AIJPMorgan Just Published a Cyber To-Do List and Snyk Covers 8 of the 10 Items. How do you stack up?April 23, 2026
Supply Chain SecurityAxios npm Package Compromised: Supply Chain Attack Delivers Cross-Platform RATMarch 30, 2026
AISecuring the Agent Skill Ecosystem: How Snyk and Vercel Are Locking Down the New Software Supply ChainFebruary 17, 2026
AIWeaving Security into the Flow: New Snyk Studio Capabilities Power the AI Security FabricFebruary 17, 2026
AIBeyond Detection: Building a Resilient Software Supply Chain (Lessons from the Shai-Hulud Post-Mortem)January 8, 2026
AISecure by Default: Why Snyk and Augment Code are the New Standard for AI DevelopmentJanuary 7, 2026