The Evolving Software Supply Chain Attack Surface: 2026 Open Source Malware Report
Sonatype's 2026 report reveals a dramatic escalation in open source malware, with over 454,600 new malicious packages identified in 2025—bringing the cumulative total to more than 1.233 million across npm, PyPI, Maven Central, NuGet, and Hugging Face.
The year marked a turning point where isolated incidents became industrialized campaigns, with over 99% of malware occurring on npm. Key developments include state-linked Lazarus Group operations (800+ packages, 97% on npm) using multi-stage payload chains with droppers (98%), secrets exfiltration (64%), and backdoors (29%); the first self-replicating npm worms (Shai-Hulud and Sha1-Hulud) that compromised over 500 packages and propagated autonomously; and massive spam campaigns like IndonesianFoods creating 150,000+ packages in days.
Attackers increasingly exploit developer behavior through typosquatting, namespace confusion, and toolchain masquerading—targeting high-velocity ecosystems like Tailwind, Vite, and React. Emerging risks include malicious AI models on Hugging Face that execute code during deserialization, and AI coding assistants that can inadvertently install malware when resolving dependencies.
The report concludes that software supply chain attacks have become attackers' most reliable weapon, with developers now constituting the primary perimeter.
https://www.sonatype.com/state-of-the-software-supply-chain/2026/open-source-malware
Comments
Post a Comment