Skip to content
supplychainattack.orgSupply chain attack incident catalog
activecritical

Malware in chai-leaf

Malware discovered in the npm package chai-leaf. Systems with this package installed are considered fully compromised and require immediate remediation including secret rotation and package removal.

ShareXLinkedInHacker News
Disclosed
Last updated
Blast radius
Any system with chai-leaf installed or running
Ecosystems
Attack vectors
Affected entities
  • chai-leafnpm package

The npm package chai-leaf has been identified as containing malware. According to the GitHub advisory, any computer with this package installed or running should be considered fully compromised.\n\nThe advisory recommends immediate action: all secrets and keys stored on affected computers should be rotated from a different, uncompromised system. The malicious package should be removed, though complete removal of all malicious artifacts cannot be guaranteed due to the potential for full system compromise.\n\nThis represents a critical supply chain attack through a compromised npm package with broad impact on any system that has installed or executed it.

Indicators of compromise

Packages
  • chai-leaf

Remediation

  • Immediately rotate all secrets and keys from a different, uncompromised computer
  • Remove the chai-leaf package from all affected systems
  • Conduct a full security audit of any system that had chai-leaf installed
  • Review system logs for suspicious activity during the period chai-leaf was installed
  • Consider full system reimaging if compromise is suspected
  • Monitor for any unauthorized access or data exfiltration

Sources

  1. GitHub Advisory GHSA-m3c7-2j38-rjh7 · GitHub Advisory Database

Cite this entry

"Malware in chai-leaf." supplychainattack.org, Supply Chain Attack Incident Catalog. Disclosed July 21, 2026; last updated July 21, 2026. https://supplychainattack.org/incident/malware-in-chai-leaf-7lpnkb

Suggest a correction

Found an error or have a newer source? Corrections to factual errors take priority over new entries.

  1. activecritical

    Malware in chai-as-reddit

    Malware discovered in the npm package chai-as-reddit. Systems with this package installed are considered fully compromised and may have given outside entities full control.

    npmCompromised package
  2. resolvedcritical

    Malware in @gocortexio/npmgremlinbox-eupl-3-0

    Malware was distributed via the npm package @gocortexio/npmgremlinbox-eupl-3-0. Systems with this package installed are considered fully compromised and require immediate remediation.

    npmCompromised package
  3. containedcritical

    Malware in @gocortexio/npmgremlinbox-lgpl-2-1

    The npm package @gocortexio/npmgremlinbox-lgpl-2-1 contained malware that grants full system compromise to attackers. Any computer with this package installed should be considered fully compromised and all secrets and keys rotated immediately from a different machine.

    npmCompromised package
  4. resolvedcritical

    Malware in @gocortexio/npmgremlinbox-epl-2-0

    Malware was discovered in the npm package @gocortexio/npmgremlinbox-epl-2-0. Systems with this package installed or running should be considered fully compromised, requiring immediate rotation of all secrets and keys from a separate computer.

    npmCompromised package