CyberSecurityBoardThreat Intel · CVEs · Products
Cyber Companies

Pillar Security Reports ChainDrop Worm

August 4, 2026

Pillar Security reported on August 4, 2026, that the ChainDrop npm worm planted malicious hooks in compromised repositories. The hooks trigger when a developer opens the workspace, posing a supply chain risk.