Intel 471

Poisoned Trust: How Supply Chain Attacks Weaponize Developer Ecosystems

Software supply chain compromise is no longer a series of isolated incidents: from September 2025 to June 2026, a single worm lineage helped redefine how attackers reach developers, and there is every reason to believe the model will keep expanding through 2026.

Maintainer accounts, publishing credentials and CI/CD workflows are now the preferred entry point, with attackers moving away from traditional exploitation toward abusing the trust built into package registries, developer tools and build pipelines. Meanwhile, the public leak of Shai-Hulud source code has lowered the barrier for copycat activity, even as large-scale supply chain compromise still demands real operational skill.

In this whitepaper, you'll learn about:

  • The evolution of the Shai-Hulud worm, from its original npm compromise through Shai-Hulud 2.0, 3.0 and beyond
  • TeamPCP, the threat group behind Mini Shai-Hulud, and how it operationalized supply chain attacks across npm and PyPI
  • Notable campaigns including GlassWorm, Axios, node-ipc and IronWorm, and what each reveals about attacker tradecraft
  • How Miasma and Hades extended the Shai-Hulud model into new ecosystems and developer tooling
  • Our analysts' forecast of where software supply chain attacks are headed next

Download Intel 471's whitepaper Poisoned Trust: How Supply Chain Attacks Weaponize Developer Ecosystems to get our comprehensive analysis of the campaigns reshaping trust across the software development lifecycle.


Loading form...