BreachCase
HomeSearchMy BreachcaseAbout
BreachCase

Breach data is aggregated from public sources and analyzed using AI. Information may not be fully accurate.

About

All Breaches

Active filters:Attack Vector: supply_chain

Filters

37 results found

North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

technology|United States

JFrog, a technology company, disclosed on July 5, 2026, that threat actors with ties to North Korea have been linked to two malicious npm packages, "r...

2026-07

Polymarket 2026 Supply Chain Attack via Third-Party Vendor

finance|United States

Polymarket, a cryptocurrency-based prediction market platform, suffered a supply chain attack after a third-party frontend vendor was breached. The in...

2026-06

Red Hat npm Scope Backdoored to Steal Cloud Secrets

technology|United States

Red Hat, a leading open-source technology company, suffered a supply chain attack where attackers backdoored 32 packages within its official npm scope...

2026-06

Arch Linux AUR 400+ Package Hijacking 2026

technology|United States

Arch Linux, a technology organization, suffered a supply chain attack where over 400 packages in the Arch User Repository (AUR) were hijacked. The bre...

2026-06

North Korean APT Targets Yanbian Gamers via Trojanized Platform

gaming|China

ESET researchers disclosed a supply-chain attack targeting the Yanbian gaming community in China, attributed to the North Korean APT group ScarCruft (...

2026-06

Texas Parks and Wildlife 2026 Third-Party Data Breach

government|United States

Texas Parks and Wildlife Department (TPWD) experienced a data breach through its license system vendor, exposing sensitive personal information of ind...

2026-06

Mastra 144 npm Packages Supply Chain Attack 2026

technology

Mastra, an open-source JavaScript and TypeScript framework for building AI applications, suffered a software supply chain attack in which 144 npm pack...

2026-06

JetBrains Marketplace 2026 Malicious Plugin Breach

technology|Czech Republic

JetBrains, a Czech technology company known for its integrated development environments (IDEs), disclosed that at least 15 malicious plugins were disc...

2026-06

Grafana Labs Code Breach via TanStack Supply Chain Attack

technology|United States

Grafana Labs, a US-based technology company, confirmed a data breach resulting from the TanStack supply chain attack. The breach was publicly disclose...

2026-06

Miasma Supply Chain Worm Burrows Into 73 Microsoft Repositories

technology|United States

Microsoft, a global technology company, suffered a supply chain attack when the Miasma worm compromised 73 of its GitHub repositories. The breach was...

2026-06

IronWorm Rust Malware Targets NPM Supply Chain 2026

technology|United States

The NPM software supply chain was targeted by a Rust-written malware campaign named IronWorm, disclosed in June 2026. The campaign specifically target...

2026-06

Lightning AI 2026 Supply Chain Attack Credential Theft

technology|United States

Lightning AI, a technology company, suffered a supply chain attack when threat actors compromised the popular Python package Lightning on PyPI. Two ma...

2026-05
Page 1 of 4Next