The Shai Hulud worm has compromised more than 26,000 public repositories in a supply chain attack. The attack targeted various npm packages, exploiting vulnerabilities that allowed unauthorized access to these…
The Shai-Hulud malware has re-emerged, infecting over 500 trojanized npm packages and compromising secrets from more than 25,000 developers within three days. The malicious packages, including those from popular…
A new wave of the Shai-Hulud malware has compromised nearly 500 npm packages, affecting over 26,000 GitHub repositories. This self-replicating worm, which targets developers' credentials and secrets, has been linked to…
Trust Wallet reported that approximately $8.5 million in cryptocurrency was stolen from over 2,500 users due to a cyberattack linked to the Shai-Hulud npm supply chain attack. The attackers accessed Trust Wallet’s…
In December 2025, the Sha1-Hulud malware emerged as a significant threat, entering the top 10 list of cybersecurity concerns. Additionally, new tools ScreenConnect and MacSync made their debut, indicating evolving…