Who is behind the NPM attack, and most importantly whose idea was it to start with ? #198248
Answered
by
EliottBDR
hasserchatphon
asked this question in
Discussions
-
Discussion TypeQuestion Discussion ContentNo response |
Beta Was this translation helpful? Give feedback.
Answered by
EliottBDR
Jun 6, 2026
Replies: 1 comment 1 reply
-
|
Honestly, the whole thing is attributed to a cybercriminal group called TeamPCP they’re the ones behind those massive "Shai-Hulud" worm attacks on NPM that messed with TanStack and Red Hat recently. But if you're wondering whose actual idea it was in the first place, or who the specific mastermind is, nobody really knows. The security community only knows the group name. To make matters worse, TeamPCP actually leaked the malware's source code on a hacking forum, so now a bunch of copycats are running with the idea too. |
Beta Was this translation helpful? Give feedback.
1 reply
Answer selected by
hasserchatphon
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Honestly, the whole thing is attributed to a cybercriminal group called TeamPCP they’re the ones behind those massive "Shai-Hulud" worm attacks on NPM that messed with TanStack and Red Hat recently.
But if you're wondering whose actual idea it was in the first place, or who the specific mastermind is, nobody really knows. The security community only knows the group name. To make matters worse, TeamPCP actually leaked the malware's source code on a hacking forum, so now a bunch of copycats are running with the idea too.