{"data":{"id":"3f83a37c-0eee-4658-b365-4d748f0280e0","title":"TensorLake npm SDK Compromised in ChainDrop Shai-Hulud Credential-Stealing Attack","summary":"Socket detected a compromised release, version 0.5.144, of the tensorlake npm SDK, which provides isolated sandboxes for running untrusted, LLM-generated code. The malicious version, published October 8, 2026, uses a preinstall hook (\"node lib/setup.mjs\") to launch an obfuscated credential-stealing and self-propagating payload, Math_Symbol.js, during installation. The payload harvests npm, GitHub, AWS, Vault, Kubernetes, SSH and AI development tool credentials, then republishes compromised packages.","solution":"N/A -- no mitigation discussed in source.","labels":["security","industry"],"sourceUrl":"https://socket.dev/blog/tensorlake-compromise?utm_medium=feed","publishedAt":"2026-10-08T02:54:50.050Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"medium","attackType":["supply_chain"],"issueType":"news","affectedPackages":null,"affectedPackageNames":null,"affectedPackageRefs":null,"affectedVendors":[],"affectedVendorsRaw":["Tensorlake","tensorlake npm SDK","Tensorlake AI agent infrastructure"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"epssCheckedAt":null,"kevDateAdded":null,"advisoryAliases":null,"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":null,"disclosureDate":"2026-10-08T02:54:50.050Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"api","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}