TI Mindmap HUB
Threat Intelligence Report

Multiple redhat-cloud-services npm Packages compromised

๐Ÿ“… June 3, 2026 ๐Ÿ“ฐ www.stepsecurity.io ๐Ÿ” 0 CVE(s) referenced

A sophisticated supply-chain attack has compromised multiple @redhat-cloud-services npm packages, deploying a multi-stage credential-stealing worm via preinstall hooks that targets CI/CD secrets, developer machines, and cloud credentials, while autonomously propagating through npm accountsโ€”even those protected by 2FA.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle