{"@attributes":{"version":"2.0"},"channel":{"title":"Datadog Security Labs","link":["https:\/\/securitylabs.datadoghq.com\/rss\/feed.xml","https:\/\/securitylabs.datadoghq.com"],"description":"Datadog Security Labs is the place to read blog content about security research and tooling published by Datadog for the community.","pubDate":"2026-07-14T00:00:00Z","item":[{"title":"Compromised AsyncAPI npm packages: inside a CI supply-chain attack","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/compromised-asyncapi-npm-packages\/","pubDate":"2026-07-14T00:00:00Z","description":"On July 14, 2026, four npm packages in the @asyncapi namespace, totaling over 3 million weekly downloads, were compromised to deliver credential-stealing malware. We investigate how the attack unfolded and how to know if you're affected."},{"title":"Not-so-anonymous telemetry: The @injectivelabs\/sdk-ts backdoor","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/not-so-anonymous-telemetry-injectivelabs-sdk-ts-backdoor\/","pubDate":"2026-07-09T00:00:00Z","description":"A malicious commit disguised as SDK telemetry briefly compromised @injectivelabs\/sdk-ts, exfiltrating wallet mnemonics and private keys."},{"title":"Coordinated GitHub API enumeration and access token abuse","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/coordinated-github-api-enumeration\/","pubDate":"2026-07-08T00:00:00Z","description":"Datadog Security Research has tracked multiple coordinated campaigns enumerating GitHub organizations, repositories, and users through the public GitHub API, abusing leaked access tokens, and cloning private repositories."},{"title":"Entra Agent ID: Protect, detect, respond","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/agent-id-protect-detect-respond\/","pubDate":"2026-07-06T00:00:00Z","description":"This post continues and concludes our series on Agent ID, by outlining steps that an administrator or security team can take to secure blueprints and agent identities created in their local Entra ID tenant."},{"title":"Backdoors & Breaches: New scenarios and adaptations","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/backdoors-and-breaches-new-scenarios\/","pubDate":"2026-07-01T00:00:00Z","description":"Sharing new scenarios and adaptations to play the Datadog expansion pack of Backdoors & Breaches."},{"title":"Introducing GuardDog 3.0: A new rules engine, transparent sandboxing, and more","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/guarddog-3-0-release\/","pubDate":"2026-06-26T00:00:00Z","description":"Release of GuardDog 3.0, an open-source tool to identify malicious packages, featuring a new YARA-based rules engine, a risk scoring engine, and built-in sandboxing."},{"title":"Behind the console: An AiTM phishing kit harvesting AWS console credentials and beyond","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/behind-the-console-aws-aitm-phishing-kit-and-beyond\/","pubDate":"2026-06-24T00:00:00Z","description":"Datadog Security Research investigates a June 2026 adversary-in-the-middle phishing campaign that cloned the AWS console login page to harvest victim credentials and multi-factor authentication codes."},{"title":"Detecting the Klue supply chain attack in Salesforce instances","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/detecting-the-klue-supply-chain-attack-in-salesforce\/","pubDate":"2026-06-22T00:00:00Z","description":"We summarize the Klue supply chain attack and provide detection guidance for Salesforce environments monitored by Datadog Cloud SIEM."},{"title":"Entra Agent ID: Inside a cross-tenant agent compromise","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/agent-id-inside-agent-compromise\/","pubDate":"2026-06-18T00:00:00Z","description":"Continuing our Agent ID series, this post demonstrates how a privileged agent could be compromised through its third-party blueprint. This leads to a cross-tenant incident similar to Midnight Blizzard, since an attacker with control over an agent blueprint can authenticate as any agent associated with that blueprint."},{"title":"Mapping out your unknown: A threat hunter\u2019s guide to Salesforce","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/mapping-out-your-unknown-threat-hunters-guide-to-salesforce\/","pubDate":"2026-06-16T00:00:00Z","description":"In this post, we walk through different threats to Salesforce and how to detect them."},{"title":"Holding blobs for ransom: Four methods for Azure Storage ransomware","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/azure-blob-storage-ransomware-four-methods\/","pubDate":"2026-06-15T00:00:00Z","description":"This post explores four vectors for threat actors to abuse Azure Storage to maliciously encrypt victim blobs, including step-by-step explanations and event codes for detection."},{"title":"Entra Agent ID: The blueprint blast radius","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/agent-id-blueprint-blast-radius\/","pubDate":"2026-06-11T00:00:00Z","description":"Entra Agent ID is an extension of Entra's application model that provides identities for AI agents. Unlike applications, the agent identity model allows linking a single app registration (blueprint) to multiple identities and their associated privileges, increasing the potential blast radius of a compromised agent."},{"title":"The case for GitHub Actions security after recent supply chain attacks","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/case-for-github-actions-security\/","pubDate":"2026-06-02T00:00:00Z","description":"GitHub Actions workflows are vulnerable to pwn requests, script injection, and compromised credentials. Here's what's going wrong and what's changing."},{"title":"From Exploit Code to Production Detection: Building a CVE-2026-31431 (Copy Fail) detection with Agents","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/cve-2026-31431-copy-fail-exploit-detection-with-agents\/","pubDate":"2026-05-28T00:00:00Z","description":"CVE-2026-31431 (Copy Fail) lets any unprivileged user corrupt the Linux page cache via AF_ALG sockets to escalate privileges. This post covers the exploit mechanics and how Datadog Security Research used coding agents to ship a detection content pack in a single session."},{"title":"Unpatchable Vulnerabilities of Kubernetes: CVE-2021-25740","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/unpatchable-kubernetes-vulnerabilities-cve-2021-25740\/","pubDate":"2026-05-21T00:00:00Z","description":"A look at how Kubernetes CVE-2021-25740 allows users with EndpointSlice access to redirect traffic via shared ingress and load balancer services."},{"title":"Pathfinding Labs: Deploy, test, and learn from 100+ intentionally vulnerable AWS environments","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/introducing-pathfinding-labs\/","pubDate":"2026-05-18T00:00:00Z","description":"Introducing Pathfinding Labs, a collection of intentionally vulnerable AWS environments for red teamers and blue teamers to deploy, exploit, and use for detection validation."},{"title":"Backdoored node-ipc npm releases steal developer credentials through DNS queries","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/node-ipc-npm-malware-analysis\/","pubDate":"2026-05-14T00:00:00Z","description":"An analysis of backdoored node-ipc npm releases that add an obfuscated credential collection and DNS exfiltration payload to the CommonJS entrypoint."},{"title":"Backdoored Cemu release linked to TanStack and Mistral supply chain campaign","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/backdoored-cemu-release-teampcp-supply-chain-campaign\/","pubDate":"2026-05-14T00:00:00Z","description":"We investigate how a coordinated supply chain campaign that compromised npm and PyPI packages also backdoored the official Cemu Nintendo Wii U emulator GitHub release, reaching nearly 20,000 Linux users."},{"title":"Shai-Hulud Goes Open Source","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/shai-hulud-open-source-framework-static-analysis\/","pubDate":"2026-05-13T00:00:00Z","description":"A static analysis of the open-sourced Shai-Hulud offensive framework attributed to TeamPCP, covering its credential harvesting, supply chain poisoning, and exfiltration capabilities."},{"title":"Malicious Coding Agent Skills and the Risk of Dynamic Context","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/malicious-skills-supply-chain-risks-in-coding-agents-with-dynamic-context\/","pubDate":"2026-05-11T00:00:00Z","description":"Learn how malicious Claude Code skills can abuse dynamic context commands to execute before model-level prompt injection defenses can intervene."},{"title":"Kubernetes security fundamentals: Secrets","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/kubernetes-security-fundamentals-part-8\/","pubDate":"2026-05-08T00:00:00Z","description":"A look at how to secure Kubernetes secrets"},{"title":"The case for dependency cooldowns in a post-axios world","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/dependency-cooldowns\/","pubDate":"2026-04-16T00:00:00Z","description":"Understanding npm and the importance of dependency cooldowns."},{"title":"Unpatchable Vulnerabilities of Kubernetes: CVE-2020-8562","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/unpatchable-kubernetes-vulnerabilities-cve-2020-8562\/","pubDate":"2026-04-09T00:00:00Z","description":"A look at how Kubernetes CVE-2020-8562 allows attackers to bypass API server proxy protections using DNS rebinding"},{"title":"Compromised axios npm package delivers cross-platform RAT","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/axios-npm-supply-chain-compromise\/","pubDate":"2026-03-31T00:00:00Z","description":"An attacker hijacked an axios maintainer's npm account to publish malicious releases that deliver a cross-platform RAT."},{"title":"Unpatchable Vulnerabilities of Kubernetes: CVE-2020-8561","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/unpatchable-kubernetes-vulnerabilities-cve-2020-8561\/","pubDate":"2026-03-27T00:00:00Z","description":"A look at how Kubernetes CVE-2020-8561 works"},{"title":"LiteLLM and Telnyx compromised on PyPI: Tracing the TeamPCP supply chain campaign","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/litellm-compromised-pypi-teampcp-supply-chain-campaign\/","pubDate":"2026-03-24T00:00:00Z","description":"On March 24 and 27, 2026, malicious PyPI releases of LiteLLM and Telnyx were published as part of the TeamPCP supply chain campaign. We trace the full campaign from Trivy through npm, Checkmarx, and into PyPI."},{"title":"Uncovering agent logging gaps in Copilot Studio","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/copilot-studio-logging-gaps\/","pubDate":"2026-03-10T00:00:00Z","description":"During research, we sometimes encounter scenarios that remind us that it's a good idea to trust but verify. In September 2025, we noticed that certain Microsoft Copilot Studio agent settings did not log certain administrative actions related to sharing, authentication, logging, and publication of Copilot Studio agents."},{"title":"Behind the console: Active phishing campaign targeting AWS console credentials","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/behind-the-console-aws-aitm-phishing-campaign\/","pubDate":"2026-03-09T00:00:00Z","description":"Datadog Security Research identified an active adversary-in-the-middle (AiTM) phishing campaign targeting AWS Console credentials via typosquatted domains that mimic AWS infrastructure."},{"title":"Hook, line, and vault: A technical deep dive into the 1Phish kit","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/hook-line-vault-a-deep-dive-into-1phish\/","pubDate":"2026-02-27T00:00:00Z","description":"We analyze the evolution of the 1Phish phishing kit from a basic credential harvester into an MFA-aware, multi-stage phishing kit targeting 1Password users."},{"title":"Kubernetes project issues warning on Ingress NGINX retirement","link":"\n    https:\/\/securitylabs.datadoghq.com\/articles\/kubernetes-ingress-nginx-retirement-warning\/","pubDate":"2026-02-19T00:00:00Z","description":"The Kubernetes project is urging organizations to migrate away from Ingress NGINX before its retirement in March 2026, with new high-severity CVEs underscoring the urgency."}]}}