[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fBlYTNeGw-QdYsvnxzpu1f92blmBTNtltA1KCxSyrmi0":3},{"article":4,"iocs":36,"watch_terms":44},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":10,"url":11,"image_url":12,"published_at":13,"ingested_at":14,"relevance_score":10,"entities":15,"category_id":16,"category":17,"article_tags":20},"5c65e276-f82b-4bb5-8ab3-f068e499db2a","UNC6426 Exploits nx npm Supply-Chain Attack to Gain AWS Admin Access in 72 Hours","unc6426-exploits-nx-npm-supply-chain-attack-to-gain-aws-admin-access-in-72-hours","A threat actor known as UNC6426 leveraged keys stolen following the supply chain compromise of the nx npm package last year to completely breach a victim's cloud environment within a span of 72 hours. The attack started with the theft of a developer's GitHub token, which the threat actor then used to gain unauthorized access to the cloud and steal data. \"The threat actor, UNC6426, then used this","Threat actor UNC6426 exploited stolen credentials from the nx npm package supply chain compromise to gain AWS admin access and breach a victim's cloud environment within 72 hours. The attack chain involved theft of a developer's GitHub token, which was leveraged to access cloud infrastructure and exfiltrate data.",null,"https:\u002F\u002Fthehackernews.com\u002F2026\u002F03\u002Func6426-exploits-nx-npm-supply-chain.html","https:\u002F\u002Fblogger.googleusercontent.com\u002Fimg\u002Fb\u002FR29vZ2xl\u002FAVvXsEjFUREkqLhVFM9jnUqkHPMEmAj2KBdTrXOX_m8t7zEUdK4NE16BBL0XQHZ9q4KPVDfKecgf4KE64vzAW9XDvn6axd6fIU9WZy5Lqe348eT7rKvmsLU3ByDPajxWFlkTt6CQTNkmNv8e57XrvWAaM-YaXtD0QP1-grx4XPtV_Osxw-vjtPfw4A70O5x41yvq\u002Fs1600\u002Faws.jpg","2026-03-11T07:31:00+00:00","2026-03-14T09:41:13.354083+00:00",[],"26b0b636-0e31-4db1-bffb-61bdf9f20a58",{"id":16,"icon":10,"name":18,"slug":19},"Supply Chain","supply-chain",[21,26,31],{"category":22},{"id":23,"icon":10,"name":24,"slug":25},"2e06f76c-d5b9-4f54-9eef-4d3447b10730","Breaches","breaches",{"category":27},{"id":28,"icon":10,"name":29,"slug":30},"c70f3a41-2f0c-4608-870d-b8cbcd8be076","Cloud Security","cloud-security",{"category":32},{"id":33,"icon":10,"name":34,"slug":35},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[37,41],{"type":38,"value":39,"context":40},"malware","UNC6426","Threat actor conducting supply chain attacks and cloud infrastructure breaches",{"type":38,"value":42,"context":43},"nx npm package","Compromised npm package used in supply chain attack to distribute stolen credentials",[]]