Home / Companies / Endor Labs / Blog / Post Details
Content Deep Dive

Tensorlake npm package compromised by Shai-Hulud in latest software supply chain attack

Blog post from Endor Labs

Post Details
Company
Date Published
Author
Kiran Raj
Word Count
669
Company Posts That Month
7
Language
English
Hacker News Points
-
Post removed?
No
Summary

On October 8, 2026, the official Tensorlake TypeScript SDK released a malicious npm version, [email protected], infected with the Shai-Hulud worm family through the project’s normal GitHub Actions publishing pipeline after an apparent maintainer-account compromise. Although the release carried valid build provenance, the incident illustrates that provenance verifies the origin of a build rather than the safety of its source code. The malware used an npm preinstall hook to automatically run obfuscated code during installation, steal npm, GitHub, SSH, cloud, Kubernetes, Docker, Vault, CI, registry, and environment-file credentials, probe cloud metadata services, and use stolen credentials to spread into other packages and exfiltrate data through GitHub, npm, and command-and-control infrastructure. The malicious version and related native binary packages have been removed, while [email protected] and earlier are considered unaffected. Organizations that installed version 0.5.144, particularly in CI environments, are advised to remove it, reinstall from clean sources, rotate all credentials available on affected hosts, investigate suspicious GitHub and npm activity, and consider disabling package installation scripts where practical.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Secrets Management 4 No monthly metrics for this publish month.
Kubernetes 1 No monthly metrics for this publish month.
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.