Massive NPM Breach: ‘is’ Package Compromised in Sophisticated Supply Chain Attack

Listen to this Post

Featured Image

A New Chapter in Software Supply Chain Attacks

A major security breach has rocked the open-source software world after attackers successfully infiltrated the widely-used NPM package ‘is’, injecting it with dangerous backdoor malware. This attack, carried out through a sophisticated phishing campaign, has raised alarms across the developer community due to its massive potential for system-wide compromise. With over 2.8 million weekly downloads, the ‘is’ package is an integral part of the JavaScript ecosystem, making this breach not just high-profile, but extremely dangerous. Developers relying on automatic updates or using affected versions unknowingly exposed their systems to remote execution capabilities—handing over control to hackers on a silver platter.

Widespread Contamination: What Happened and Who’s Affected?

On July 19, 2025, John Harband, the primary maintainer of the ‘is’ package, revealed that versions 3.3.1 to 5.0.0 had been laced with malware. The breach began with a targeted phishing attack that hijacked Harband’s credentials. Once inside, the attackers stealthily changed ownership permissions and published malicious versions, which went unnoticed for at least six hours. During this window, countless developers may have downloaded these compromised versions, unknowingly exposing their systems to danger.

The ‘is’ package serves a critical function by offering type-checking and value-validation methods for JavaScript applications. It’s a foundational utility integrated into testing libraries, build systems, backends, and command-line tools. Its compromise has far-reaching implications across the software supply chain.

The malware payload hidden in ‘is’ operates as a JavaScript-based backdoor, exploiting WebSocket connections to exfiltrate data and allow remote execution of arbitrary code. By dynamically importing the ‘ws’ library, it sends sensitive system information like OS details, CPU specs, and environment variables over a live socket. Any message received via this channel is instantly executed, effectively creating an interactive remote shell for the attackers.

But the nightmare doesn’t end there. Several other high-profile NPM packages were compromised in the same attack:

`eslint-config-prettier`: versions 8.10.1, 9.1.1, 10.1.6, 10.1.7

`eslint-plugin-prettier`: versions 4.2.2, 4.2.3

`synckit`: version 0.11.9

`@pkgr/core`: version 0.2.8

`napi-postinstall`: version 0.3.1

`got-fetch`: versions 5.1.11, 5.1.12

Further analysis revealed that these versions were carrying a Windows-targeted infostealer named Scavanger, designed to harvest sensitive browser data. It uses advanced evasion techniques like indirect syscalls and encrypted command-and-control (C2) traffic, though it might trigger detection alerts in Chrome due to suspicious flag behavior.

The true scope of this attack remains unclear, but experts fear that more packages may have been compromised using similar methods. Developers are being urged to disable auto-updates, reset passwords and tokens, and lock dependencies to versions released before July 18, 2025. These measures are essential to stop further damage and secure development environments across the ecosystem.

💡 What Undercode Say:

A Shifting Battlefield in Open Source Security

The compromise of the ‘is’ package is more than just another supply chain incident—it represents a paradigm shift in how threat actors are targeting the software ecosystem. Unlike traditional exploits, which often require direct access to systems, supply chain attacks allow adversaries to embed malicious logic directly into the tools developers trust the most.

What makes this attack particularly dangerous is its multi-layered execution strategy. The threat actors didn’t just hijack credentials and inject malicious code; they also deployed stealthy data exfiltration, live command execution, and browser-based espionage. This kind of sophistication indicates a highly coordinated effort, potentially backed by a well-resourced threat group.

The use of WebSocket-based remote shells is also noteworthy. It bypasses many traditional detection mechanisms by using legitimate communication protocols and JavaScript’s native execution environment. The malware’s ability to blend into routine network traffic gives it a low-profile footprint, making it harder for endpoint detection systems to flag abnormal behavior.

Another critical takeaway is the dependency cascade in open-source development. A small utility like ‘is’ being compromised can ripple through the entire development chain. Tools like eslint or got-fetch are often deeply integrated in testing and CI/CD pipelines, meaning the exposure multiplies across platforms, teams, and even enterprises. This attack proves once again that no package is too small to matter.

Phishing continues to be the weapon of choice, and this time it succeeded spectacularly. The attackers created a fake domain, npnjs[.]com, closely resembling the legitimate npmjs.com, to harvest credentials from maintainers. It highlights the ongoing vulnerability of human-centric entry points in cybersecurity.

For developers and maintainers, this is a critical moment. The industry needs a culture of vigilance, with practices like multi-factor authentication, key rotation, and tighter CI/CD scanning baked into everyday workflows. Dependency management tools must evolve to actively monitor version changes and metadata anomalies, not just check for semantic version mismatches.

Moreover, we are likely to see a wave of “copycat” attacks, as the techniques used here become more widespread. Packages with lower visibility may already be infected and just waiting to be discovered. The discovery of ‘Scavanger’ suggests a growing interest among cybercriminals in harvesting browser-stored credentials, which can lead to credential stuffing, account takeovers, and data leaks.

Maintainers are now the new front line of software security. Any credentials stored in plaintext or reused across platforms can be turned into a weapon against millions. The open-source community must implement zero-trust principles at every level, from personal accounts to global package registries.

🔍 Fact Checker Results:

✅ Confirmed: The ‘is’ package was compromised and malware was injected between versions 3.3.1 and 5.0.0.
✅ Confirmed: Attackers used phishing with a fake domain (npnjs[.]com) to gain access.
✅ Confirmed: Multiple other popular packages were also compromised in the same campaign.

📊 Prediction:

⚠️ Expect more supply chain attacks in the next 6-12 months as attackers realize the power of targeting package maintainers.
🔐 Security tooling will pivot toward proactive supply chain protection, including tamper-proof publishing and real-time dependency scanning.
🚨 Major players in open-source, including GitHub and NPM, may introduce mandatory MFA and AI-driven anomaly detection for all maintainer actions.

References:

Reported By: www.bleepingcomputer.com
Extra Source Hub:
https://www.quora.com/topic/Technology
Wikipedia
OpenAi & Undercode AI

Image Source:

Unsplash
Undercode AI DI v2

🔐JOIN OUR CYBER WORLD [ CVE News • HackMonitor • UndercodeNews ]

💬 Whatsapp | 💬 Telegram

📢 Follow UndercodeNews & Stay Tuned:

𝕏 formerly Twitter 🐦 | @ Threads | 🔗 Linkedin