Hackernews posts about Shai-Hulud
- New Shai-Hulud malware wave compromises 600 NPM packages (itnerd.blog)
- Pythagora-io/GPT-pilot Compromised – Shai-Hulud Cred Stealer Blocked by ruff (www.stepsecurity.io)
- Shai-Hulud Returns: Over 300 NPM Packages Infected (helixguard.ai)
- Shai Hulud launches second supply-chain attack (www.aikido.dev)
- Post-mortem of Shai-Hulud attack on November 24th, 2025 (posthog.com)
- Live updates: Shai-hulud, the most dangerous NPM breach in history (www.koi.security)
- Mini Shai-Hulud: Bun Payloads Hit SAP NPM Packages (www.stepsecurity.io)
- Shai-Hulud: The novel self-replicating worm infecting NPM packages (www.sysdig.com)
- Malware crew TeamPCP open-sources its Shai-Hulud worm on GitHub (www.theregister.com)
- Malware crew TeamPCP open-sources its Shai-Hulud worm on GitHub (www.theregister.com)
- Malware crew TeamPCP open-sources its Shai-Hulud worm on GitHub (www.theregister.com)
- The Shai-Hulud 2.0 npm worm: analysis, and what you need to know (securitylabs.datadoghq.com)
- Shai-Hulud: Open Sourcing the Carnage (github.com)
- Shai Hulud strikes again – The golden path (www.aikido.dev)
- The new Shai-Hulud worm threatens to wipe your machine if you revoke its token (cybersecurityreach.org)
- Microsoft's Durabletask Package on PyPI Compromised. Mini Shai Hulud (www.aikido.dev)
- PyPI and Shai-Hulud: Staying Secure Amid Emerging Threats (blog.pypi.org)
- Shai-Hulud Supply-Chain Scanner (Rust) (github.com)
- Big attack on NPM – Shai-Hulud 2.0 (about.gitlab.com)
- Shai-Hulud malware infects 500 NPM packages, leaks secrets on GitHub (www.bleepingcomputer.com)