Hackers Compromise @antv Packages in Mini Shai-Hulud npm Attack Wave

A sweeping supply chain attack has hit the npm ecosystem, compromising hundreds of widely used JavaScript packages tied to the @antv data visualization library. The attack, which unfolded in the early hours of May 19, 2026, injected malicious code into packages used by millions of developers worldwide. Among the affected packages is echarts-for-react, a popular […]

The post Hackers Compromise @antv Packages in Mini Shai-Hulud npm Attack Wave appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: