Shai-Hulud is a self-spreading malware family that historically propagates via NPM packages, enabling rapid compromise of Node.js projects.
Shai-Hulud is a self-spreading malware family that historically propagates via NPM packages, enabling rapid compromise of Node.js projects. The 2nd version, Shai-Hulud 2, expands its infection surface to low-code platforms in addition to the NPM ecosystem, signaling broader cross-environment capabilities. This evolution increases supply-chain and development-tooling risk by targeting both traditional npm workflows and low-code environments.
The Shai-Hulud malware has re-emerged, infecting over 500 trojanized npm packages and compromising secrets from more than 25,000 developers within three days. The malicious packages, including those from popular…
A new wave of the Shai-Hulud malware has compromised nearly 500 npm packages, affecting over 26,000 GitHub repositories. This self-replicating worm, which targets developers' credentials and secrets, has been linked to…