How open-source malware is re-targeting UK supply chains

https://cdn.mos.cms.futurecdn.net/YQaVTQE6JAfu6bvPgwmd5U-2560-80.jpg

Open-source malware has changed shape.

What once focused on noisy cryptomining has moved toward something far more valuable: access.

Our recent data shows attackers are increasingly targeting credentials and secrets embedded in software dependencies, with UK organizations firmly in scope.

Field CTO at Sonatype.

This shift marks a move away from opportunistic abuse toward deliberate supply-chain compromise. Instead of draining compute cycles, attackers are positioning themselves inside build pipelines and developer workflows.

The goal is persistence, not disruption.

For organizations that rely heavily on open source software, this fundamentally changes both the threat model and the potential impact.

This is what “shift left” actually means in 2026: controlling what enters the build, not just detecting what runs in production.

Why credential theft has overtaken cryptomining

More than half of malicious open-source packages now focus on stealing credentials and secrets, overtaking cryptomining as the dominant threat type. The reason is...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more