Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A threat actor designated IronWorm compromised 36 npm packages by abusing stolen Trusted Publishing credentials, injecting a Rust-based infostealer that targets AI API keys, AWS credentials, SSH private keys, and cryptocurrency wallet material across developer and CI/CD environments. Organizations that installed affected packages during the exposure window must assume secrets were exfiltrated, including credentials granting access to cloud infrastructure and AI services. Containment was achieved before high-traffic packages were reached, but any environment that consumed a trojanized package version during the exposure window must be treated as compromised.

Author

Tech Jacks Solutions