Mark RadarMARK RADAR
About
EN
Sign in
Topic File

Supply Chain Attacks

Supply chain attacks indirectly infiltrate downstream users through open-source packages, development tools, CI/CD pipelines or trusted vendors. Recent incidents have centered on the NPM, PyPI and GitHub ecosystems, as well as AI development tools. North Korean hackers and groups including APT32 have also targeted cryptocurrency and fintech companies in attempts to steal credentials, wallet private keys and assets. Because malware can spread rapidly through updates and AI agent tools may expand the scope of execution, these risks warrant continued monitoring.

31 core events · 17 peripheral · Tracking since 2026-02-26 · Last active 2026-08-24 · crypto 8・fintech 3・ai 20

Key Moments

6 selected

The full history is split into 6 equal periods by event count, taking the most-covered story from each. Coverage rises and falls with the news cycle, so sampling period by period keeps the most recent events from taking everything.

  1. 2026-08-21 Malicious ArrayRef Package Hits Solana and Ethereum Developers 3 reports
  2. 2026-07-07 North Korean Hackers Launch PolinRider Supply-Chain Attack to Steal Cryptocurrency 3 reports
  3. 2026-05-25 ‘TrapDoor’ Malware Targets Crypto and AI Development Tools in Supply-Chain Attack 4 reports
  4. 3 more key moments Sign up to see the full context

Event Timeline

31 core events
17 peripheral mentions — events mainly about something else

You have used up your follow slots

The free plan caps how many topics you can follow. More slots and a daily digest are being planned — tell us what you think, and we'll let you know the moment it opens.

If there were a paid plan, roughly how much would you pay?

Nothing about the plan or pricing is settled yet; this answer only helps decide whether and how to build it.

Mark Radar|MARK RADAR
All times are in Taipei time (GMT+8)