惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Palo Alto Networks Blog
云风的 BLOG
云风的 BLOG
小众软件
小众软件
V
Visual Studio Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
腾讯CDC
Microsoft Security Blog
Microsoft Security Blog
K
Kaspersky official blog
C
Cisco Blogs
The Last Watchdog
The Last Watchdog
宝玉的分享
宝玉的分享
IT之家
IT之家
Cisco Talos Blog
Cisco Talos Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
W
WeLiveSecurity
NISL@THU
NISL@THU
爱范儿
爱范儿
AI
AI
Security Latest
Security Latest
T
The Blog of Author Tim Ferriss
M
MIT News - Artificial intelligence
博客园 - Franky
B
Blog RSS Feed
GbyAI
GbyAI
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Engineering at Meta
Engineering at Meta
S
Secure Thoughts
Recorded Future
Recorded Future
L
Lohrmann on Cybersecurity
Webroot Blog
Webroot Blog
C
CERT Recently Published Vulnerability Notes
P
Privacy International News Feed
T
Troy Hunt's Blog
L
LangChain Blog
P
Privacy & Cybersecurity Law Blog
Last Week in AI
Last Week in AI
Know Your Adversary
Know Your Adversary
The Cloudflare Blog
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
www.infosecurity-magazine.com
www.infosecurity-magazine.com
P
Proofpoint News Feed
B
Blog
O
OpenAI News
Latest news
Latest news
T
Tor Project blog
Google DeepMind News
Google DeepMind News
F
Fortinet All Blogs
量子位
博客园 - 三生石上(FineUI控件)
Y
Y Combinator Blog

Orca Security

The Complete Guide to LLM Security: Risks, Best Practices, and Solutions Cloud Security LIVE 2026: Top 10 Takeaways Practitioners Can Use Now Cloud Security LIVE 2026: Top 10 Takeaways CISOs Can Use Now (and What to Do Next) How Orca Traced an nginx Flaw to 1.45 Million Tengine Servers All Running Vulnerable Code What to Look for in Container Security Tools Cloud Application Security Best Practices for DevSecOps Cloud Security Tools: 10 Types Explained for Teams What Is NIST CSF? Framework 2.0 Explained 7 Open Source Incident Response Tools by Category Critical Langflow Path Traversal Flaw Exploited for Unauthenticated RCE Critical PhpSpreadsheet RCE Patch Bypass Puts Millions at Risk Critical Splunk Enterprise Vulnerabilities Allow Unauthenticated File Operations and Remote Code Execution 16 Best Open Source Application Security Tools 2026 What Is Containerization? Security and Best Practices 8 Container Security Best Practices for 2026 Close the Cloud Identity Gap with Orca and AWS IAM Access Analyzer The 5-Step Context-Aware Cloud Vulnerability Prioritization Framework Critical Jupyter Enterprise Gateway Vulnerabilities Enable Full Kubernetes Cluster Takeover AI Security Best Practices for Regulated Industries Massive PyPI Supply Chain Attack Harvests Cloud Credentials via Python Startup Hooks SAST vs SCA: Key Differences for AppSec Teams What Is Cloud Security Architecture? Principles, Layers, and Frameworks What Is ASPM? A Guide to Application Security Posture Management What Is SaaS Security? A Practical Guide 2026 What Is a Man-in-the-Middle Attack? A Cloud Security Guide What Is Open Policy Agent? Best Practices and Use Cases 11 Best Open-Source DevSecOps Tools for 2026 How to Secure AI Workloads in Multi-Cloud Environments: A Complete Framework Critical WordPress Plugin Vulnerability Allows Unauthenticated Admin Takeover on 150K Sites What Is Kubernetes as a Service? KaaS Explained Critical Netlogon RCE Flaw Actively Exploited Against Windows Domain Controllers Your FedRAMP Continuous Monitoring Strategy Has a Gap. We Built Something to Fix It. How to Simplify Multi-Cloud Compliance Reporting: The 2026 Checklist Red Hat npm Packages Compromised in Supply-Chain Attack Spreading Credential-Stealing Worm Critical RCE in LiquidJS Lets Attackers Execute Arbitrary Commands on Unpatched Hosts Securing Shadow AI: How to Detect Unapproved LLMs in Your Cloud Data Security Posture Management (DSPM) for AI Gitea Container Registry Exposes Private Images to Unauthenticated Attackers Critical Unauthenticated RCE in Kopia Backup via SSH ProxyCommand Injection Best Palo Alto Networks Cortex (Prisma Cloud) Alternatives in 2026 7 Enterprise AI Security Risks to Manage Critical Pre-Auth RCE in ChromaDB Threatens AI Infrastructure Critical Coder Signature Bypass Exposes Developer Keys and Tokens New “PoolSlip” NGINX Exploit Revives Unpatched Remote Code Execution Risk Critical Drupal SQL Injection Exposes PostgreSQL-Backed Sites to Remote Code Execution AI Security Tools: How to Evaluate Them Across Every ML Attack Phase Massive npm Supply Chain Attack Compromises AntV Ecosystem, Steals CI/CD Secrets at Scale NIST AI Risk Management Framework (AI RMF) Explained: What It Is and How Organizations Use It The AI Data You Forgot to Lock: How Exposed Vector Databases Put Organizations at Risk GenAI Risks in Cloud Environments: What Security Teams Are Actually Missing in 2026 What Is Multi-Cloud Security? What Is Cloud Detection and Response (CDR)? Linux kernel vulnerability enables local theft of SSH host keys and /etc/shadow 18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated DoS and Potential RCE Announcing Cloud Security Agent Skills for Orca’s MCP Server TanStack and 160+ npm/PyPI Packages Compromised in Supply Chain Worm Attack Dirty Frag: Linux Kernel Vulnerability Chain Enables Local Privilege Escalation to Root Critical Apache HTTP Server HTTP/2 Vulnerability Could Enable Remote Code Execution Skill Issues: How We Discovered Supply Chain Attack Vectors in an AI Agent Skills Marketplace What Is an Incident Response Plan? What Is Cloud Data Security? Risks, Challenges, and 12 Best Practices Remote Code Execution in GitHub Enterprise Server via Git Push Injection (CVE-2026-3854) Linux Kernel Bug (Copy.Fail) Enables Local Privilege Escalation to Root (CVE-2026-31431) Xinference PyPI package compromise leads to full environment takeover What is Application Security? When AI Accelerates the Offense, Coverage Gaps Become Catastrophic Orca Security Recognized in the 2026 TAG Enterprise AI Security Handbook Navigating Cloud Security in 2026: Join Cloud Security LIVE Anthropic’s Project Glasswing Is a Positive Step Toward Cleaner, Safer Production Kyverno SSRF: Breaking Kubernetes Namespace Isolation (CVE-2026-4789) Streamline Compliance Reporting with Orca and Drata’s Integrated Vulnerability Management CVE-2026-23226: How a Missing Lock in ksmbd’s Channel List Exposes Your Linux SMB3 Server 2026 State of AppSec: When Development Velocity Outpaces Security AI Is Entering Your Infrastructure. Now what? Orca Security Featured in SACR’s 2026 Unified Agentic Defense Platforms Report Supply Chain Attack on Axios Delivers Cross-Platform RAT via Compromised npm Account Credential‑Stealing Malware in LiteLLM Supply Chain Attack Mission Accomplished: Orchestrate Your Remediation Strategy With Orca Missions The Orca Approach to Runtime AI Security
144 Mastra npm Packages Compromised via Supply Chain Attack
The Orca Research Pod · 2026-06-17 · via Orca Security

A critical supply chain attack was disclosed affecting the entire @mastra/* npm scope, allowing attackers to deploy a cross-platform infostealer on any system that installed affected packages. Due to the potential for credential theft, cryptocurrency wallet compromise, and full system persistence, immediate remediation is required for all affected environments.

Technical Overview

The issue originates from a hijacked npm contributor account (“ehindero”) whose publishing access to the @mastra scope was never revoked. On June 17, 2026, the attacker executed an 88-minute automated campaign (01:12–02:39 UTC), republishing 142 packages under the @mastra scope with a single injected dependency: “easy-day-js”, a typosquat of the legitimate dayjs library. The day before, the attacker published a clean easy-day-js@1.11.21 to establish credibility, then weaponized it as v1.11.22 minutes before the mass-publish. Because compromised packages pinned “^1.11.21”, npm’s semver resolution automatically pulled the malicious version.

The malicious easy-day-js contained an obfuscated postinstall hook (setup.cjs) that disabled TLS verification, wrote beacon markers to temp directories, fetched a second-stage payload from attacker C2 infrastructure, spawned it as a detached background process, and self-deleted to hide forensic evidence. By exploiting npm’s install-time script execution, attackers gained the ability to harvest browser data from Chrome, Edge, and Brave, extract credentials from 166 cryptocurrency wallet extensions (including MetaMask, Phantom, Coinbase, and Binance), perform full host reconnaissance, establish cross-platform persistence, and exfiltrate all collected data to attacker infrastructure. No user interaction beyond running “npm install” is required for compromise.

Affected Systems

The following components are affected: all 142 packages under the @mastra/* npm scope, plus the top-level “mastra” and “create-mastra” packages. The malicious dependency easy-day-js@1.11.22 is the direct vector. These packages are used by developers building AI applications with the Mastra framework, which has combined weekly downloads exceeding 1.1 million. The highest-impact package is @mastra/core with approximately 918K weekly downloads. Any developer workstation, CI runner, or build system that installed any @mastra/* package after June 16, 2026 is potentially compromised.

Organizations should treat any affected system as fully compromised. Remediation steps include rolling back to pre-incident package versions, rotating all credentials (npm tokens, GitHub tokens, cloud provider keys, LLM API keys, CI/CD secrets, SSH keys, and database credentials), migrating cryptocurrency wallet funds to new wallets generated on clean devices, and removing persistence artifacts. On Windows, check the HKCU registry Run key and C:\ProgramData\NodePackages\. On macOS, check ~/Library/LaunchAgents/com.nvm.protocal.plist and ~/Library/NodePackages/. On Linux, check ~/.config/systemd/user/nvmconf.service and ~/.config/NodePackages/. Network IOCs to block include 23.254.164.92 and 23.254.164.123 (Hostwinds, ASN AS54290). Run “npm ls easy-day-js” in all projects for rapid detection.

Risk Impact

At the time of writing, the attack has been publicly documented by JFrog, SafeDep, Socket, and StepSecurity, and the malicious packages have been flagged. Tradecraft overlaps with Sapphire Sleet/BlueNoroff have been noted by Microsoft. Regardless of attribution, the severity and ease of exploitation make this incident high risk, especially for organizations with large JavaScript/TypeScript codebases and CI/CD pipelines that pull npm dependencies automatically. Successful exploitation allows attackers to steal credentials and secrets, compromise cryptocurrency wallets, establish persistent access across all major operating systems, and execute arbitrary code remotely, leading to service disruption, data exposure, and potential full infrastructure compromise.

How Orca Can Help

Orca enables customers to quickly identify assets running compromised @mastra/* package versions and detect the presence of the malicious easy-day-js dependency across cloud workloads, container images, and CI/CD pipelines. Orca’s Software Composition Analysis (SCA) capabilities flag affected packages, while malware detection identifies persistence artifacts and suspicious network connections to the known C2 infrastructure. Orca’s platform highlights affected assets directly in the newItem view, helping security teams understand their exposure in context, including internet accessibility, runtime reachability, and asset criticality, and prioritize remediation based on real risk.