PULSE NAME
Axios Package Hijacked to Execute Remote Access Attacks
WHITE CODERED_VTA 2026-03-31 Modified: 2026-03-31
25
IOCs
MEDIUM VOLUME
A popular HTTP client library, axios, has been compromised by an attacker who published two malicious versions of the library on the npm platform.. and then published them on its own GitHub Actions.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Linux Python KICS Python
Indicators of Compromise (5 / 25 total)
All FileHash-SHA1 IPv4 URL domain email hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-SHA1 07d889e2dadce6f3910dcbc253317d28ca61c766 2026-03-31
FileHash-SHA1 2553649f2322049666871cea80a5d0d6adc700ca 2026-03-31
FileHash-SHA1 7c29f4cf2ea91ef05018d5aa5399bf23ed3120eb 2026-03-31
FileHash-SHA1 ab1be887a2d37dd9ebc219657704180faf2c4920 2026-03-31
FileHash-SHA1 d6f3f62fd3b9f5432f5782b62d8cfd5247d5ee71 2026-03-31