cognitive cybersecurity intelligence

News and Analysis

Search

Shai-Hulud malware infects 500 npm packages, leaks secrets on GitHub

Shai-Hulud malware infects 500 npm packages, leaks secrets on GitHub

Bill Toulas reports: Hundreds of trojanized versions of well-known packages such as Zapier, ENS Domains, PostHog, and Postman have been planted in the npm registry in a new Shai-Hulud supply-chain campaign. The malicious packages have been added to NPM (Node Package Manager) over the weekend to steal developer and continuous integration and continuous delivery (CI/CD) secrets….

Source

Source: databreaches.net –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts