{"slug": "introducing-safedep-threat-intel", "title": "Introducing SafeDep Threat Intel", "summary": "SafeDep has launched SafeDep Threat Intel, an add-on to any paid plan that provides SOC and cyber defense teams with a malicious package feed API and a Threat Intel Dashboard, covering npm, PyPI, Go, Maven, and more. The service offers continuous streams of suspicious and confirmed malicious packages, campaigns, and indicators of compromise, aiming to protect against supply chain attacks.", "body_md": "# Introducing SafeDep Threat Intel\n\nSafeDep Threat Intel is now available as an [add-on to any paid plan](https://safedep.io/pricing#threat-intel).\n\nIt gives **SOC** and **cyber defense** teams the malicious package intelligence behind SafeDep’s platform. They can query it, or push it into the tools they already run to protect against supply chain attacks in their network.\n\nCheck out the [📑 Documentation](https://docs.safedep.io/threat-intel/overview)\n\n## What’s in it?\n\n**Malicious package feed API.** A continuous stream of suspicious and confirmed malicious packages, campaigns, and indicators of compromise (IoCs) across npm, PyPI, Go, Maven, and more.\n\n**SafeDep Threat Intel Dashboard.** A curated place for all verdicts, reasoning, and campaigns in the [SafeDep console](https://app.safedep.io).\n\n## Package Verdict Feed\n\n## Package Verdict Details\n\n## Campaigns\n\n🚀 [Quickstart](https://docs.safedep.io/threat-intel/overview) with **SafeDep Threat Intel**\n\n### Support\n\n[Contact us](https://safedep.io/contact/) via email, [Discord and other channels](https://docs.safedep.io/community).\n\n- threat-intelligence\n- malware\n- supply-chain\n- secops\n\n### Author\n\n####   [Kunal Singh](https://www.linkedin.com/in/kunalsin9h/)  \n\n safedep.io\n\n### Share\n\n## The Latest from SafeDep blogs\n\nFollow for the latest updates and insights on open source security & engineering\n\n   \n\n##   [A malicious npm package hidden three dependencies deep: the ulid-xyz delivery chain](/ulid-xyz-transitive-dependency-delivery-chain)  \n\n ulid-xyz is a remote access trojan we reported to OSV as MAL-2026-6672. It reached developers as a third-level transitive dependency of ioredis-xyz, a copy of the real Redis client planted in 28...\n\n   \n\n##   [From YouTube Ad to Root: How a Fake TradingView Installer Delivers a macOS Stealer](/youtube-ad-fake-tradingview-macos-stealer)  \n\n A YouTube video ad impersonating TradingView delivered a fake .pkg installer. Inside: a self-healing LaunchAgent, an AES-encrypted V8 bytecode payload, and a Node.js MITM proxy trusted by a rogue...\n\n   \n\n##   [Mini Shai-Hulud Strikes Again: openapi-react-query-codegen](/mini-shai-hulud-openapi-react-query-codegen-compromised)  \n\n An attacker exploited a flawed GitHub Actions workflow to publish 10 malicious versions of @7nohe/openapi-react-query-codegen (671K downloads/month) via npm OIDC trusted publishing. The payload uses...\n\n   \n\n##   [Malicious Rust Crate arrayref Runs a Build-Time Payload](/arrayref-proc-macro1-rust-build-time-malware)  \n\n A compromised release of the popular Rust crate arrayref pulled in a typosquatted proc-macro1 whose build script downloads and runs a remote binary at compile time. The malicious versions are now...\n\n## Ship Code.\n\n## Not Malware.\n\nStart free with open source tools on your machine. Scale to a unified platform for your organization.", "url": "https://wpnews.pro/news/introducing-safedep-threat-intel", "canonical_source": "https://safedep.io/introducing-safedep-threat-intel", "published_at": "2026-09-08 07:30:28.092814+00:00", "updated_at": "2026-09-08 07:30:29.687904+00:00", "lang": "en", "topics": ["ai-products"], "entities": ["SafeDep", "Kunal Singh"], "alternates": {"html": "https://wpnews.pro/news/introducing-safedep-threat-intel", "markdown": "https://wpnews.pro/news/introducing-safedep-threat-intel.md", "text": "https://wpnews.pro/news/introducing-safedep-threat-intel.txt", "jsonld": "https://wpnews.pro/news/introducing-safedep-threat-intel.jsonld"}}