New Variant of Shai Hulud Malware Discovered with Enhanced Obfuscation Techniques
First seen 2 Jan 2026, 13:27 UTC
•
•31
Export
Article Content
Browse articles
Researchers have identified a modified variant of the Shai Hulud malware that has been embedded in npm packages. This new strain shows significant changes from the original version, indicating that threat actors are refining their techniques and have deep access to the malware's source code.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
TeamPCP Compromises Microsoft DurableTask and GitHub Actions in Supply Chain Attack
Glassworm Botnet Targeting Developers Disrupted by CrowdStrike and Google
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
Shai Hulud npm Worm Compromises Over 26,000 Repositories
Shai Hulud Malware Exploits NPM Supply Chain Vulnerabilities
Shai Hulud 3.0 Variant Discovered as Supply Chain Threat