Skip to content
supplychainattack.orgSupply chain attack incident catalog

2026 08 Alphalend Layouts supply chain incidents

1 confirmed incident publicly associated with this group. Attribution reflects what the cited sources state; it is recorded for filtering, not asserted by this site.

  1. resolvedcritical

    Malicious code in alphalend-abi (PyPI)

    The alphalend-abi PyPI package contained malicious code that exfiltrates sensitive files containing SUI private keys to a private GitHub repository. The malicious behavior is triggered on package import and on every Python startup via PTH file abuse.

    2026 08 Alphalend LayoutsPyPICompromised package