Stop Assuming Your Website's Small Features are Safe: The Hidden Risk in Your AI-Built Tools
Hackers recently hijacked popular code libraries like Keyv to steal data from websites. If you use AI to build site features, you might be using this infected code. You need to audit your site's ingredients and update your security immediately.
Key Takeaways
- AI tools often recommend popular code libraries that may have been recently compromised by hackers.
- The Shai-Hulud attack specifically targeted NPM libraries used by millions of developers.
- Small businesses are targets because they often lack the technical oversight to spot poisoned code blocks.
- A Software Bill of Materials is a necessary document for every business owner to manage digital risk.
- Never push AI-generated code to a live site without a human security review of the third-party dependencies.

The Invisible Threat in Your Code
You probably think your website is safe because you use a big-name hosting provider. If you used AI to build a custom calculator, a lead magnet, or a small helper tool recently, there is a hole in your digital fence. A security breach called the Shai-Hulud attack hit the foundations of how software is built. It targets the small building blocks your AI developers use every day.
Research from Aikido Security shows hackers compromised several popular code libraries, including one called Keyv. These libraries live in NPM, which is a giant warehouse of pre-written code that developers and AI grab to save time. When you ask an AI to write a script for your site, it reaches into this warehouse. If the warehouse is tainted, your website becomes a carrier for whatever the hackers want to do next.
Why Small Business Owners are the Target
This is a case of AI supply chain security for small business being overlooked. You are the path of least resistance. Hackers take over a boring piece of code that does one simple job, like storing temporary data. Because that code is used inside thousands of other tools, the infection spreads silently. When you use AI to generate code, the AI does not check if the library it recommends was hijacked three hours ago.
This happens when business owners bolt on new features quickly. You might use a tool like Qwen or ChatGPT to write the backend for a client portal. The AI suggests using a library like Keyv because it is popular. You click install, and you have handed the keys to your server to people who use this access to steal sensitive credentials and environment variables. These are the secret passwords that let your website talk to your database or your email provider.
The Practitioner's View
Code is not a static object. It is more like a garden that needs weeding. If you do not audit the dependencies (the code from other people your site relies on), you are leaving your front door open. The Shai-Hulud attack proves that even standard tools can be turned against you instantly.
How to Audit Your Risk This Week
You do not need to be a computer scientist to protect your business. You just need to manage your digital assets. Here is how you can strip back the risk and secure your site today.
First, ask your developer for a Software Bill of Materials. This is a list of ingredients. If they cannot give you a list of every third-party library your site uses, you have a problem. You need to know what is running under the hood to check it against lists of infected code.
Second, run a basic security scan. There are free tools that look at your code and highlight anything that looks like the compromised Keyv library. As reported by Aikido, the attackers were looking for secrets, which are the passwords your site uses to function. If a scan shows your site is trying to send data to an unknown server, shut it down.
Third, stop putting AI-written code live without a human review. AI is a great co-pilot but a terrible security guard. It will recommend a library that was compromised yesterday because its training data says that library is popular. Always have a human who understands security look at the code before it touches your customer data.
Fourth, update your passwords for your hosting and your databases. If you were caught in a supply chain attack, the hackers might already have your old credentials. Changing them now cuts off their access even if they left a back door in the code.
What to Watch Next
I expect we will see more of these warehouse attacks this year. Hackers realize that infecting one developer tool is more efficient than attacking 1,000 individual websites. Keep an eye on your site's performance. If it slows down or starts behaving oddly, check your dependencies. Get that list of ingredients from your developer today and make sure Keyv is not on it.
FAQ
What is a supply chain attack in simple terms?
It is like a restaurant using a tainted ingredient from a supplier. The restaurant did nothing wrong, but the food is still dangerous because the source was compromised.
How do I know if my site uses the Keyv library?
Ask your developer for a list of NPM dependencies (the external code blocks used) or use a free code scanning tool to search your website's files for the name Keyv.
Can I still use AI to write code for my business?
Yes, but you must treat AI like a junior intern. It can do the work, but a senior professional must check the work for security flaws before it goes live.