HomeSecurityMini Shai-Hulud attacks AntV npm packages via compromised account

Mini Shai-Hulud attacks AntV npm packages via compromised account

The Mini Shai-Hulud attack has affected hundreds of npm packages in the @antv ecosystem , after attackers managed to compromise the account of the maintainer atool . This new move is part of an ongoing supply chain attack campaign targeting popular software development tools and represents a significant escalation in cybercriminals’ tactics. This attack differs from previous campaigns in that it specifically targets the data visualization ecosystem , a critical part of modern web application development.

See also: 'Mini Shai-Hulud': SAP-Related npm Packages Compromised with Credential Stealer

Mini Shai-Hulud

The affected packages include echarts-for-react , a widely used React wrapper for Apache ECharts with approximately 1.1 million weekly downloads . Also targeted are @antv/g2 , @antv/g6 , @antv/x6 , @ antv/l7 , @antv/s2 , @ antv/ f2 , @antv/ g , @antv/g2plot , @ antv/graphin , and @antv/data-set , as well as related packages outside the @antv namespace such as timeago.js , size-sensor , and canvas-nest.js . These packages are widely used in enterprise applications to create interactive graphs, maps, and dashboards, making the attack particularly dangerous for the business world.

Cybersecurity researchers point out that this tactic fits perfectly with the Mini Shai-Hulud, where a compromised maintainer account is used to release trojanized versions in rapid succession. This development comes as the supply chain attack campaign continues to infiltrate the software supply chain, rapidly penetrating different open-source registries and infecting hundreds of software packages. The self-replicating nature of the attack makes it particularly worrisome, as each new victim can become a platform for further malware.

Technical details of the Mini Shai-Hulud attack

The potential radius of destruction is significant because the affected publishing account is associated with widely used packages in data visualization, graphing, mapping, charting and React components. Even if only a subset of these packages received malicious updates, the popularity of the ecosystem creates significant exposure for organizations that automatically pull new versions of dependencies. This attack is particularly concerning for companies that rely on continuous integration and automated deployment pipelines, as malicious versions can automatically make their way into production environments.

See also: Mini Shai-Hulud Worm: Infects TanStack, Mistral AI and other Packages

Mini Shai-Hulud attacks AntV npm packages via compromised account

According to the researchers, the attacker published 639 malicious versions in 323 unique packages , including 558 versions in 279 unique @antv packages . The stealer payload collects more than 20 types of credentials , including Amazon Web Services , Google Cloud , Microsoft Azure , GitHub , npm , SSH , Kubernetes , Vault , Stripe , and database connection strings, while attempting Docker container escape via the host socket. The malware ’s ability to escape Docker containers makes it particularly dangerous for modern cloud-native environments that rely on containerization to isolate applications.

The malware incorporates an npm propagation logic that abuses stolen npm tokens to first validate them via the npm registry API , enumerates the packages maintained by the token holder, downloads package tarballs , injects the malicious payload, adds a preinstall hook , increments the package versions, and republishes them using the compromised maintainer's identity. This automated process allows the attack to spread exponentially within hours, making detection and remediation extremely difficult.

The self-replicating Mini Shai-Hulud campaign is believed to be the work of a financially motivated threat group called TeamPCP . However, since last week, the activity has entered an aggressive new phase after TeamPCP released the full source code for other threat actors to use as part of a supply chain attack contest announced in partnership with BreachForums . This development signals a worrying trend of democratization of attack tools, as even less experienced cybercriminals can now execute sophisticated supply chain attacks.

Protection and response strategies

To effectively protect against such attacks, organizations should adopt a multi-layered security strategy. This includes using dependency scanning tools that can detect malicious packages before installation, implementing a Software Bill of Materials (SBOM) to track all dependencies, and creating private npm registries for critical applications. Additionally, using container scanning and runtime protection can detect and prevent container escape attempts used by the Mini Shai-Hulud malware.

See also: New version of Shai-Hulud worm spreads via npm, GitHub

Mini Shai-Hulud attacks AntV npm packages via compromised account

Organizations should freeze or pin dependencies to known good versions, check lockfiles and recent npm install, and revoke and rotate secrets that may have been exposed. Protecting maintainer accounts with phishing-resistant MFA and hardware security keys is critical to preventing future attacks. Finally, implementing a zero-trust architecture and continuously monitoring development and production environments for anomalous activity are key components of a comprehensive defense strategy against supply chain attacks.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Absentee Mia
Absentee Miahttps://www.secnews.gr
Being your self, in a world that constantly tries to change you, is your greatest achievement

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS