> ## Content Index
> Fetch the complete content index at: https://adjacent.media/llms.txt
> Use this file to discover other available public pages before exploring further.

# Supply chain attackers now targeting SAP and npm developer tools
- URL: https://adjacent.media/signals/supply-chain-attackers-now-targeting-sap-and-npm-developer-tools/
- Published: 2026-05-01T16:11:52.000Z
- Updated: 2026-05-01T16:11:52.000Z
- Description: Attackers are shifting from infrastructure to the tools developers use daily. Stealing credentials from SAP systems and npm packages penetrates deeper into enterprise operations than previous tactics.
- Author: Jonathan Greene
- Tags: #signal, theme-connected, supply chain security, infrastructure vulnerabilities, developer tools

Source: [The Register](https://go.theregister.com/feed/www.theregister.com/2026/04/30/supply%5Fchain%5Fattacks%5Fsap%5Fnpm%5Fpackages/?ref=adjacent.media)

Attackers are shifting from infrastructure to the tools developers use daily. Stealing credentials from SAP systems and npm packages penetrates deeper into enterprise operations than previous tactics. A compromised dependency can distribute malware across thousands of downstream projects at once, forcing organizations to treat their development toolchain as a security perimeter, not an engineering convenience. The targeting of both enterprise software and open-source package managers shows attackers are weaponizing the entire developer ecosystem simultaneously.