# MemTensor Packages Compromised via CI Pipeline

A security breach was discovered involving the MemTensor npm and PyPI packages, which were compromised through their own continuous integration (CI) pipeline. Attackers exploited the GitHub Actions release workflow by intercepting publish tokens before the legitimate release process executed, enabling distribution of malicious package versions. This incident underscores significant risks in software supply chain security that directly impact government procurement and contractors relying on third-party open-source software components.

- Procurement professionals should assess the security posture of software supply chains, especially for critical open-source dependencies integrated into government systems.
- Agencies and contractors must evaluate CI/CD pipeline security controls and token management practices to prevent unauthorized code publication.
- This event highlights the need for enhanced vetting and monitoring of software packages used in government contracts to mitigate risks of supply chain attacks.
- Organizations should consider incorporating supply chain security requirements and incident response protocols into procurement contracts involving software development and maintenance.

**Jurisdictions:** federal
**Industries:** Information Technology
**Topics:** Cybersecurity
**Published:** September 23, 2026

### Vendors
- MemTensor (incumbent package maintainer)

### Key Quotes
> The attacker didn't push code directly. They got into MemTensor's GitHub Actions release workflow, intercepted the publish tokens before the real job ran, then used those tokens to ship the malicious packages themselves.
> — Original poster

### Sources
- [MemTensor npm and PyPI packages were backdoored today through their own CI pipeline](https://www.reddit.com/r/cybersecurity/comments/1wo2w0o/memtensor_npm_and_pypi_packages_were_backdoored) - reddit-cybersecurity