Multi-stage npm supply chain worm campaign discovered in February 2026 that targets AI-augmented development workflows. The attack exploits runtime behaviors of AI coding assistants, CI automation, and LLM toolchains through 19 malicious npm packages. The infection chain consists of three stages: an obfuscated loader with multi-layer encoding, initial reconnaissance with credential harvesting, and a full capability suite deployed after a time-delay gate.