Shai-Hulud Npm Supply Chain Attack — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
December 31, 2025
Last Seen
December 31, 2025

Shai-Hulud Npm Supply Chain Attack is a threat campaign that compromised npm packages to reach users of crypto wallets.

Overview

Shai-Hulud Npm Supply Chain Attack is a threat campaign that compromised npm packages to reach users of crypto wallets. It relies on a supply-chain compromise in the npm ecosystem to deliver malicious payloads to wallet users, culminating in financial theft. The campaign's significance stems from its large financial impact on Trust Wallet users and its demonstration of how third-party dependencies can be weaponized against crypto platforms.

Related Threat Clusters

Recent Intelligence Reports

  • Shai-Hulud Supply Chain Attack Drained $8.5 Million from Trust Wallet Users — Thecyberexpress · December 31, 2025

CVSS v3.1 Breakdown