S1ngularity, also known as QUIETVAULT, was a 2025 npm software supply-chain compromise involving trojanized versions of Nx build-system packages. Attackers abused a GitHub Actions workflow weakness to obtain repository and npm publishing credentials, then published malicious package releases. The packages used install-time hooks to search developer workstations and build environments for GitHub and npm tokens, cloud credentials, SSH keys, API keys, cryptocurrency wallet data, and sensitive files. The malware also used locally available AI command-line agents for credential and file reconnaissance. Stolen GitHub credentials were used to create public repositories containing exfiltrated data, and the attackers deleted branches and workflow-run artifacts to hinder investigation. The campaign primarily endangered Node.js developers, CI/CD runners, and organizations using affected Nx packages, demonstrating how compromised package-publishing workflows can distribute credential-stealing malware to downstream development environments.
Mallory pivots from this family to the IOCs, detections, and named campaigns that touch your stack, and pages you when something new lands.
8 distinct techniques documented for this family, organized by ATT&CK tactic.
4 indicators attributed across vendor reports, sandbox runs, and researcher write-ups. Full values are available in Mallory.
File hashes (MD5, SHA-1, SHA-256) from samples and reports.
11 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
A malicious npm-package supply-chain campaign that stole credentials, tokens, cloud credentials, and SSH keys. It abused victim GitHub accounts for public-repository-based exfiltration and queried locally available AI agents to locate sensitive files.
Supply-chain payload deployed through compromised Nx packages. It searched developer endpoints for credentials, SSH keys, cryptocurrency wallets, and installed AI CLI tools, and visibly injected a shutdown command into shell profiles.
Named malware or attack family associated with large-scale software supply-chain attacks involving malicious library versions.
A named npm supply-chain malware campaign using injected bundle.js and postinstall hooks to execute malicious code during package installation.
Match every observed IP, domain, and hash against your live telemetry.
Named campaigns wielding this family, with evidence pinned to each claim.
CVEs this family uses for access and lateral movement.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Every documented technique, ranked by evidence weight.
Reddit, Mastodon, and CTI community discussion around this family.