[{"data":1,"prerenderedAt":130},["ShallowReactive",2],{"story-207847-en":3},{"id":4,"slug":5,"slugs":5,"currentSlug":5,"title":6,"subtitle":7,"coverImagesSmall":8,"coverImages":9,"content":23,"questions":24,"relatedArticles":46,"body_color":128,"card_color":129},"207847",null,"Critical npm Supply Chain Breach: 140+ Mastra Packages Compromised | Developer Security Alert","- North Korean hackers hijacked 140+ npm packages targeting AI developers; 1.1M+ weekly downloads exposed; credential theft and malware deployment confirmed",[],[10,11,12,13,14,15,16,17,18,19,20,21,22],"https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEiKLWn0zHFuJ8rkb2bqILIyAGxt_-VJ13Ytmv1TRWtGJkI6Rva5Oag5LdLasE2rmenokuRvoEI2wH0Ayfe_P4_5q1Qc5FQ2MrQgUHrgD9wY6DTlYugAtj8CP7Fh0OPjKkU5LbeRKWvPEh0Ol0CmLTe4QVayeZiNlVFvU7MO5tWl-b8Lbn80hKd45q9Z1yOd\u002Fs1700-e365\u002Fnpms.jpg","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEiqZc333PlcJpU8v73HXa2mJsFoIGz4n1vUoqJAecGmokIAUqQZr14TpnE9dBKozEKSGOXLJoGFMImMamNhNg-LaUU9Ga8F6-mk0SqE6BpPdk4W8_N0laAOS8W2BredYbHqj2sDq1dgk0CB7sBFvP6_chTCmTyVKjxT6CPjntUtp2QTfSPViZFzaRbSz4rx\u002Fs1600\u002FMastra%20NPM%20Backdoor%20Attack.webp","https:\u002F\u002Fassets.korearisk.com\u002Fuploads\u002Fsites\u002F4\u002F2024\u002F05\u002FDPRK-computer-user.png","https:\u002F\u002Fwww.bleepstatic.com\u002Fcontent\u002Fhl-images\u002F2023\u002F11\u002F07\u002FNorth_Korean_hackers.jpg","https:\u002F\u002Fwww.microsoft.com\u002Fen-us\u002Fsecurity\u002Fblog\u002Fwp-content\u002Fuploads\u002F2026\u002F03\u002FMS_Actional-Insights_Malware-ransomware-1.jpg","https:\u002F\u002Fismg-cdn.nyc3.cdn.digitaloceanspaces.com\u002Farticles\u002Fmastra-ai-framework-poisoned-in-npm-supply-chain-attack-image_large-5-a-32003.jpg","https:\u002F\u002Fi.ytimg.com\u002Fvi\u002FggKQ_qbbARk\u002Fmaxresdefault.jpg","https:\u002F\u002Fd.techtimes.com\u002Fen\u002Ffull\u002F467117\u002Fphoto-taken-june-14-2018-students-wearing.jpg?w=836&f=220b182e575d042ae872229d6f0bad52","https:\u002F\u002Fcdn.prod.website-files.com\u002F656eaf5c6da3527caf362363\u002F65aad934ea4ab1eade22509b_learn-wavy-bg-2-v4.webp","https:\u002F\u002Fcdn.prod.website-files.com\u002F673b71f0790aabf30bd30bf8\u002F6a3200c2a586eee7baa3f0e9_Screenshot%202026-06-16%20at%207.01.58%E2%80%AFPM.png","https:\u002F\u002Fblog.tipranks.com\u002Fwp-content\u002Fuploads\u002F2025\u002F06\u002F22db00c6422825f1722658fea46cc46f-750x406.png","https:\u002F\u002Fwww.ox.security\u002Fwp-content\u002Fuploads\u002F2026\u002F06\u002Feasy-day-js_-Crypto-Stealing-Supply-Chain-Attack-Hits-npm.png","https:\u002F\u002Fmedia.cybernews.com\u002Fimages\u002Ffeatured-big\u002F2025\u002F07\u002Fcybercrooks.jpg","A sophisticated supply chain attack attributed to **Sapphire Sleet**, a North Korean state-sponsored hacking group, compromised approximately **140-145 npm packages** within the Mastra AI framework ecosystem between June 16-19, 2024\u002F2026. The attackers hijacked the \"ehindero\" npm maintainer account and injected a malicious typosquatted dependency called **\"easy-day-js\"** (impersonating the legitimate dayjs library with 57 million weekly downloads) into affected packages. The attack employed a staged delivery pattern: a clean bait version (1.11.21) was published first to establish credibility, followed by a weaponized version (1.11.22) containing an obfuscated postinstall hook that executed automatically during npm install operations. The malware dropper disabled TLS certificate verification, contacted attacker-controlled command-and-control infrastructure (IP: 23.254.164.92:8000), and downloaded second-stage payloads—cross-platform information stealers targeting Windows, Linux, and macOS systems.\n\n**For e-commerce sellers and SaaS developers**, this attack carries significant operational risk. The compromised Mastra packages—including mastra-core (918,000+ weekly downloads), mastra-memory, and mastra-server—are widely used in AI application development environments containing sensitive credentials: **LLM API keys** (OpenAI, Anthropic, Google), **cloud provider credentials** (AWS, Azure), **database tokens**, and **CI\u002FCD secrets**. The malware specifically targeted **166 cryptocurrency wallet browser extensions** (MetaMask, Phantom, Coinbase Wallet, Binance Wallet, TronLink), indicating attackers prioritized financial asset theft. Microsoft assessed with high confidence that Sapphire Sleet orchestrated this attack, noting the group primarily targets the financial sector and has a documented history of cryptocurrency theft campaigns, malicious browser extensions, and software supply chain compromises. The group was previously responsible for the April 2024 Axios npm supply chain attack, demonstrating sustained focus on compromising developer tools.\n\n**The operational impact extends beyond direct Mastra users.** Any developer workstation or CI\u002FCD pipeline running npm install or npm update after the compromised versions were published faced potential exposure. The attack chain involved seven phases: account compromise, typosquat creation using anonymous Tutamail email addresses, mass poisoning of 140 packages with injected dependencies, automatic delivery through semantic versioning resolution, postinstall hook execution, second-stage payload delivery, and post-compromise tradecraft including PowerShell backdoors and persistence mechanisms. Attackers republished 140 packages within 88 minutes (01:12-02:39 UTC), maximizing exposure window. The payload executed during installation regardless of whether the package was imported in application code—a critical vulnerability affecting JavaScript developers globally. Microsoft coordinated with npm security to remove compromised packages and revoke attacker access, but the incident reveals systemic risks in open-source dependency management that directly threaten e-commerce platforms, SaaS providers, and fintech applications relying on JavaScript\u002FNode.js infrastructure.",[25,28,31,34,37,40,43],{"title":26,"answer":27,"author":5,"avatar":5,"time":5},"What systemic vulnerabilities does this attack reveal in npm and open-source dependency management?","The Mastra attack exposes critical vulnerabilities in npm's dependency management ecosystem: (1) Maintainer account compromise via social engineering (LinkedIn phishing confirmed in Mastra investigation); (2) Lack of automatic revocation of legacy contributor access—the 'ehindero' account retained publish rights despite being a former contributor; (3) Typosquatting vulnerability where malicious packages can impersonate legitimate libraries (easy-day-js mimicking dayjs with 57M weekly downloads); (4) Postinstall hook execution regardless of package usage in application code; (5) Delayed detection windows allowing 88-minute deployment of 140 compromised packages. These vulnerabilities affect JavaScript developers globally and underscore the need for stricter npm security policies, automated dependency scanning, and supply chain verification mechanisms across e-commerce and SaaS platforms.",{"title":29,"answer":30,"author":5,"avatar":5,"time":5},"What immediate actions should developers take if they installed affected Mastra packages?","Security experts recommend treating any workstation or CI environment that installed affected Mastra versions as potentially compromised and immediately implementing credential rotation and forensic auditing. Developers should: (1) Rotate all credentials, API keys, and tokens immediately, including LLM API keys (OpenAI, Anthropic, Google), cloud provider credentials (AWS, Azure), database tokens, and CI\u002FCD secrets; (2) Audit browser history and installed applications for unauthorized access; (3) Check cryptocurrency wallet browser extensions for unauthorized transactions; (4) Review CI\u002FCD pipeline logs for suspicious activity; (5) Update to patched Mastra versions after Microsoft and npm security removed compromised packages and revoked attacker access. Mastra has unpublished malicious versions and implemented stricter security measures, including removing token bypass functionality.",{"title":32,"answer":33,"author":5,"avatar":5,"time":5},"How does this attack impact e-commerce platforms and SaaS providers using Mastra?","E-commerce platforms and SaaS providers using Mastra for AI-powered features face significant operational risk if they installed compromised packages during the June 16-19 window. The attack exposed development environments containing AWS credentials, database tokens, and CI\u002FCD secrets—assets that could enable attackers to compromise production systems, steal customer data, or manipulate business logic. The 1.1 million+ weekly downloads of Mastra packages indicate widespread adoption across the developer ecosystem. Sellers and platform operators should audit their development infrastructure, rotate all credentials, and implement stricter dependency management practices including automated vulnerability scanning, package signature verification, and restricted npm account access with multi-factor authentication.",{"title":35,"answer":36,"author":5,"avatar":5,"time":5},"How did the malware execute and what data did it steal?","The malware executed through a postinstall hook that ran automatically when developers installed affected Mastra packages, regardless of whether the package was imported in application code. The dropper script disabled TLS certificate verification, contacted attacker-controlled command-and-control infrastructure (IP: 23.254.164.92:8000), and downloaded second-stage payloads. The malware collected host information, browser histories, installed applications, and specifically checked for 166 cryptocurrency wallet browser extensions. For e-commerce and SaaS developers, the attack exposed critical development environments containing LLM API keys (OpenAI, Anthropic, Google), cloud provider credentials (AWS, Azure), database tokens, and CI\u002FCD secrets—assets that could compromise entire business operations if exfiltrated.",{"title":38,"answer":39,"author":5,"avatar":5,"time":5},"What is the timeline and scale of the Mastra attack deployment?","Attackers republished 140 packages across the Mastra ecosystem within 88 minutes (01:12-02:39 UTC) on June 17, 2026, using automated scripts targeting core packages like mastra-core (918,000+ weekly downloads), mastra-memory, mastra-server, and infrastructure components. The initial account compromise occurred on June 19, 2024 (per News 1) or June 17, 2026 (per News 3-4), with the clean bait version published June 16, 2026, followed by the weaponized version. The rapid deployment window maximized exposure before detection, affecting any developer workstation or CI\u002FCD pipeline running npm install or npm update during the compromise window. This represents an ongoing active attack, with additional Mastra packages continuing to be compromised.",{"title":41,"answer":42,"author":5,"avatar":5,"time":5},"What is the Mastra npm supply chain attack and how many packages were compromised?","Between June 16-19, 2024, attackers hijacked the npm account 'ehindero' and compromised 140-145 packages within the Mastra AI framework ecosystem by injecting a malicious typosquatted dependency called 'easy-day-js.' The attack used a two-stage delivery pattern: a clean bait version (1.11.21) followed by a weaponized version (1.11.22) containing an obfuscated postinstall hook that automatically executed during npm install. The malware targeted developer environments containing sensitive credentials including LLM API keys, cloud provider credentials, database tokens, and CI\u002FCD secrets. Mastra packages received over 1.1 million weekly downloads, creating significant exposure for AI developers and SaaS platforms.",{"title":44,"answer":45,"author":5,"avatar":5,"time":5},"Who is Sapphire Sleet and why did they target Mastra packages?","Sapphire Sleet is a North Korean state-sponsored hacking group also known as BlueNoroff, attributed by Microsoft with high confidence to orchestrating the Mastra attack. The group primarily targets the financial sector and has a documented history of cryptocurrency theft campaigns, malicious browser extensions, fake job offers, and software supply chain compromises. Sapphire Sleet was previously responsible for the April 2024 Axios npm supply chain attack, demonstrating sustained focus on compromising developer tools and stealing credentials and cryptocurrency assets. The group specifically targeted 166 cryptocurrency wallet browser extensions (MetaMask, Phantom, Coinbase Wallet, Binance Wallet, TronLink), indicating financial asset theft as the primary objective.",[47,52,56,60,64,68,72,76,80,84,88,92,96,100,104,108,112,116,120,124],{"id":48,"title":49,"source":50,"logo":14,"time":51},1129221,"From package to postinstall payload: Inside the Mastra npm supply chain compromise by Sapphire Sleet","https:\u002F\u002Fwww.microsoft.com\u002Fen-us\u002Fsecurity\u002Fblog\u002F2026\u002F06\u002F17\u002Fpostinstall-payload-inside-mastra-npm-supply-chain-compromise","1D AGO",{"id":53,"title":54,"source":55,"logo":22,"time":51},1129232,"Over 140 Mastra npm packages compromised in supply chain attack","https:\u002F\u002Fcybernews.com\u002Fsecurity\u002Fmastra-npm-packages-hit-by-supply-chain-attack",{"id":57,"title":58,"source":59,"logo":19,"time":51},1129222,"Mastra npm Supply Chain Attack: 140+ Packages Backdoored via easy-day-js Typosquat","https:\u002F\u002Fwww.stepsecurity.io\u002Fblog\u002Fmastra-npm-packages-compromised-using-easy-day-js",{"id":61,"title":62,"source":63,"logo":21,"time":51},1129233,"easy-day-js Supply Chain Attack Hits Mastra AI in npm","https:\u002F\u002Fwww.ox.security\u002Fblog\u002Feasy-day-js-supply-chain-attack-hits-mastra-ai-in-npm",{"id":65,"title":66,"source":67,"logo":18,"time":51},1129230,"Mastra npm Org Compromised: Multiple Packages Trojanized to Drop a Remote Payload via easy-day-js","https:\u002F\u002Fwww.endorlabs.com\u002Flearn\u002Fmastra-npm-org-compromised-multiple-packages-trojanized-to-drop-a-remote-payload-via-easy-day-js",{"id":69,"title":70,"source":71,"logo":13,"time":51},1129220,"Microsoft links Mastra AI supply chain attack to North Korean hackers","https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fmicrosoft-links-mastra-ai-supply-chain-attack-to-north-korean-hackers",{"id":73,"title":74,"source":75,"logo":5,"time":51},1129231,"Microsoft Links Mastra AI npm Supply Chain Attack to North Korean Sapphire Sleet Hackers","https:\u002F\u002Fwindowsreport.com\u002Fmicrosoft-links-mastra-ai-npm-supply-chain-attack-to-north-korean-sapphire-sleet-hackers",{"id":77,"title":78,"source":79,"logo":5,"time":51},1129225,"North Korean Hackers Abuse Mastra npm Supply Chain to Target Developers and CI\u002FCD Pipelines","https:\u002F\u002Fcybersecuritynews.com\u002Fnorth-korean-hackers-abuse-mastra-npm-supply-chain",{"id":81,"title":82,"source":83,"logo":20,"time":51},1129236,"Supply Chain Security Risks Highlighted by Mastra npm Package Compromise","https:\u002F\u002Fwww.tipranks.com\u002Fnews\u002Fprivate-companies\u002Fsupply-chain-security-risks-highlighted-by-mastra-npm-package-compromise",{"id":85,"title":86,"source":87,"logo":17,"time":51},1129226,"npm Supply Chain Attack: North Korea Backdoored 144 AI Packages in 88 Minutes","https:\u002F\u002Fwww.techtimes.com\u002Farticles\u002F318767\u002F20260621\u002Fnpm-supply-chain-attack-north-korea-backdoored-144-ai-packages-88-minutes.htm",{"id":89,"title":90,"source":91,"logo":16,"time":51},1129237,"Over 140 popular Mastra npm Packages Hit by Supply Chain Attack","https:\u002F\u002Fwww.aikido.dev\u002Fblog\u002Fover-140-popular-mastra-npm-packages-hit-by-supply-chain-attack",{"id":93,"title":94,"source":95,"logo":10,"time":51},1129223,"145 Mastra npm Packages Compromised via Hijacked Contributor Account","https:\u002F\u002Fthehackernews.com\u002F2026\u002F06\u002F144-mastra-npm-packages-compromised-via.html",{"id":97,"title":98,"source":99,"logo":15,"time":51},1129234,"Mastra AI Framework Poisoned in npm Supply-Chain Attack","https:\u002F\u002Fwww.bankinfosecurity.com\u002Fmastra-ai-framework-poisoned-in-npm-supply-chain-attack-a-32003",{"id":101,"title":102,"source":103,"logo":12,"time":51},1129224,"North Korean hackers behind supply chain attack on AI platform: Microsoft","https:\u002F\u002Fwww.nknews.org\u002Fpro\u002Fnorth-korean-hackers-behind-supply-chain-attack-on-ai-platform-microsoft",{"id":105,"title":106,"source":107,"logo":5,"time":51},1129235,"Mastra npm Scope Takeover: 140+ Packages Compromised via easy-day-js Dropper","https:\u002F\u002Fsecurityboulevard.com\u002F2026\u002F06\u002Fmastra-npm-scope-takeover-140-packages-compromised-via-easy-day-js-dropper",{"id":109,"title":110,"source":111,"logo":5,"time":51},1129229,"Sapphire Sleet Hijacks npm Maintainer Account to Publish Poisoned Mastra Packages","https:\u002F\u002Fgbhackers.com\u002Fsapphire-sleet-hijacks-npm",{"id":113,"title":114,"source":115,"logo":11,"time":51},1129227,"Mastra npm Supply Chain Attack Delivers Node.js Implant and PowerShell Backdoor","https:\u002F\u002Fcyberpress.org\u002Fmastra-npm-backdoor-attack",{"id":117,"title":118,"source":119,"logo":5,"time":51},1129238,"Hackers Target npm Ecosystem by Compromising 140+ Mastra Packages","https:\u002F\u002Fgbhackers.com\u002Fhackers-target-npm-ecosystem",{"id":121,"title":122,"source":123,"logo":5,"time":51},1129228,"A Forgotten Contributor Account Compromised the Entire Mastra npm Package Scope","https:\u002F\u002Fsnyk.io\u002Fblog\u002Fa-forgotten-contributor-account-compromised-the-entire-mastra-npm-package-scope",{"id":125,"title":126,"source":127,"logo":5,"time":51},1129239,"Hackers Compromise 140+ Mastra npm Packages to Steal Credentials","https:\u002F\u002Fcyberpress.org\u002Fcompromise-140-mastra-npm-packages","#9ab7e9ff","#9ab7e94d",1782293482498]