Palo Alto Networks Unit 42 research shows that ChainDrop, a self-propagating npm supply chain worm, extracts GitHub Actions runner memory secrets, targets specific repositories, and alters C2 domains with one Ethereum transaction.

Public source

Publisher name

Public post

ChainDrop, a self-propagating npm supply chain worm, infected hundreds of popular packages. Palo Alto Networks Unit 42 research shows it extracts GitHub Actions runner m…

Log in to read the full post

Company

Palo Alto Networks Unit 42

Unit 42 Threat Intelligence & Incident Response. Intelligence Driven. Response Ready.

Industry
Computer and Network Security
Location
SANTA CLARA, US
Company size
501–1,000 employees

About Palo Alto Networks Unit 42

Palo Alto Networks Unit 42 brings together world-renowned threat researchers with an elite team of incident responders and security consultants to create an intelligence-driven, response-ready organization passionate about helping customers more proactively manage cyber risk. With a deeply rooted reputation for delivering world-class threat intelligence, Unit 42 provides industry-leading incident response and cyber risk management services to security leaders around the globe.

See more

Latest activity

23 signals

Discover more

Similar public activity from other companies.

Customize signals for your business.

Know everything happening across the B2B world, and act on the company movements that matter to you.

© 2026 SeedOpsCompany intelligence.

SeedOps.