Today's Core Dump is brought to you by ThreatPerspective

The Register - Security

Shai-Hulud worm returns, belches secrets to 25K GitHub repos

Trojanized npm packages spread new variant that executes in pre-install phase, hitting thousands within days A self-propagating malware targeting node package managers (npm) is back for a second round, according to Wiz researchers who say that more than 25,000 developers had their secrets compromised within three days.

Published: 2025-11-24T14:08:37











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us