LLMgram · AI News · 2026-08-04

Active npm worm Shai-Hulud hits 868 packages

Active npm worm Shai-Hulud hits 868 packages

An active npm supply-chain attack tied to the Shai-Hulud worm is reported to have compromised at least 868 packages totaling over 2 billion monthly installs after the GitHub account behind keyv was breached. A preinstall hook drops a stealer that targets npm, GitHub, AWS, Kubernetes, and Vault secrets and then spreads to additional maintainers.

LLMgram editorial selection and synthesis · @llmgram. LLMgram is not the original publisher of this information.
Continue on LLMgram: Open in AI Signal →
Original reporting: International Cyber Digest (@IntCyberDigest) sur X