US Markets
Home›US Markets›Sectors›CrowdStrike warns of North Korea-linked npm supply cha…
CrowdStrike warns of North Korea-linked npm supply chain attack
CrowdStrike said 131 Mastra AI framework packages were poisoned, and it cited that 87% of identified software-registry threats in the first half of 2026 involved npm packages.
CrowdStrike said a North Korea-linked adversary injected a malicious dependency into at least 131 Mastra AI framework packages hosted on npm, according to Yahoo Finance.
The report says GitHub, which Microsoft acquired in 2020 and operates, runs the npm registry, and that stolen maintainer credentials allowed the attacker to publish poisoned Mastra versions tagged as the latest releases.
CrowdStrike also said the “easy-day-js” dependency ran during installation, potentially exposing developer machines and build pipelines to credential theft and remote code execution.
The story ties the incident to company demand, noting CrowdStrike fiscal Q1 2027 revenue grew 26% to $1.39 billion and annual recurring revenue rose 24% to $5.51 billion, and it highlights the valuation case against a backdrop of roughly 32 times revenue guidance.