The Axios supply chain attack used individually targeted social engineering
3rd April 2026
The Axios team have published a full postmortem on the supply chain attack which resulted in a malware dependency going out in a release the other day, and it involved a sophisticated social engineering campaign targeting one of their maintainers directly. Here’s Jason Saayman’a description of how that worke...
This attack exemplifies the evolving sophistication of social engineering in supply chain compromises. The strongest version of this narrative is that it demonstrates how threat actors exploit human psychology—trust, urgency, and professional norms—to bypass technical defenses. The attackers leveraged multiple layers of deception: a cloned corporate identity, a functional Slack workspace with fabricated activity, and a staged meeting with fake participants. The use of a RAT disguised as a routin...
