GitHub Trust Signals Fail Against Shai-Hulud Worms
GitHub’s usual trust cues can be forged here. A malicious commit can be made to look old and routine, and the displayed author identity can be whatever the attacker wants, so reviewers who lean on history or names can miss a fresh compromise.
Researchers say GitHub closed two reports on those design flaws even as Shai-Hulud variants kept spreading across ecosystems. Their public review found 516 live malicious packages, more than 3,000 affected repositories, and over 200 compromised developer accounts, with GitHub code search missing the worm’s large obfuscated payload.
The result is a gap that survives normal cleanup. Even if the original package is removed, the forged history and hidden payload can keep similar worms moving through npm, PyPI, RubyGems, and other repositories.