Upwind reports a supply chain attack on Mastra npm packages
The attack used easy-day-js dropper to install a cross-platform RAT affecting macOS, Linux, and Windows.
See the latest news and media coverage for Upwind. We track all announcements, press releases, and industry mentions in real time, all in one place.
Cloud-native application protection platform
upwind.ioLast updated
In short: Upwind launched an AI Agentic Pack for cloud security, expanded its runtime security platform, and received a $1.6 billion valuation from investors.
The attack used easy-day-js dropper to install a cross-platform RAT affecting macOS, Linux, and Windows.
It found compromised versions of Microsoft's durabletask SDK and a supply chain worm affecting TanStack packages.
It provides a unified view of encryption controls across AWS and Azure, focusing on PQC readiness and AI workload security.
It describes a June 1, 2026 compromise of 32 @redhat-cloud-services npm packages that harvests tokens, propagates via npm publish, and exposes cloud and CI/CD credentials.
Upwind, the runtime-first cloud security leader, today announced the launch of its AI Agentic Pack, a new set of specialized AI agents built into its...
Upwind Security is expanding in India after a $250 million funding round, focusing on runtime cloud protection, AI-driven cyber threats, and DPDP compliance.
Funding: Upwind’s $250 million funding highlights the growing shift from posture-led cloud security to runtime visibility as AI and zero-day risks reshape enterprise defence.
Claude Code Security didn’t kill cybersecurity. It exposed what’s coming next. Laser energy: From the military domain to the core of civilian innovation ... Upwind...
Track Upwind and your other target companies to get real-time alerts and weekly summaries delivered straight to your inbox.
Browse news for competitors to Upwind and other trending companies.