Axios NPM Supply Chain Attack

Axios NPM Supply Chain Attack

March 31, 2026 · 26 min

About this episode

The episode discusses the supply chain attack on the axios NPM package and its implications.

Dennis and Lindsey dig into what we know do far about the supply chain attack on the axios NPM package, including how the attacker gained access to the maintainer's account, the window of exposure for the malicious packages, the behavior of the RAT that's installed on victims' machines, and what the downstream effects may be. Links Huntress post : https://www.huntress.com/blog/supply-chain-compromise-axios-npm-package Socket analysis : https://socket.dev/blog/axios-npm-package-compromised

People in this episode

Hosts: Dennis, Lindsey

Topics covered

Keywords

Mentioned in this episode

Organizations: axios, Huntress, Socket

More episodes of Decipher Security Podcast

Explore listener stats, chart rankings, contacts and more on the Decipher Security Podcast podcast page.