Threats · 95 days ago
A signed npm package can still be a trap if the CI/CD pipeline or maintainer account is compromised. The break is not just a bad dependency; the trusted publishing path itself can be used to ship poison that still looks legitimate to verification tools.
Microsoft says 32 @redhat-cloud-services packages were altered across more than 90 versions after attackers used the RedHatInsights/javascript-clients CI/CD pipeline and a legitimate GitHub Actions OIDC publishing workflow. The packages kept authentic provenance signatures, then ran a preinstall hook that stole credentials from developer and CI systems and helped republish more poisoned versions.
That leaves a clean-looking artifact as a live infection point and a persistence channel. Teams that rely on package signatures alone still need to treat the publishing workflow as part of the trust boundary.
13 sources covering this story
Shai-Hulud malware worms Red Hat npm package versions downloaded 80K times a week
TeamPCP? Or copycat malware dev?
IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks
Multiple npm supply chain attacks used 50+ poisoned packages to spread IronWorm, a Rust-based stealer, and a Miasma worm variant.
Rust-Written IronWorm Hits NPM Supply Chain
Like Shai-Hulud, the campaign targets developers to steal credentials and reuses them to propagate across the software supply channel.
New IronWorm malware hits 36 packages in npm supply-chain attack
A new supply-chain attack has infected 36 packages on the Node Package Manager (npm) index with infostealer malware called IronWorm.
The malicious code steals credentials from GitHub, cloud platforms, and local machines, then spreads like a worm by republishing trusted packages.
Dozens of Red Hat npm packages targeted in supply chain attack
Researchers said a variant of the Mini Shai-Hulud is involved in the compromise.
The Record from Recorded Future
Red Hat removes tainted packages after software pipeline compromise
According to the company’s preliminary analysis, a compromised GitHub account was used to push the malicious code out to customers, hitting 32 packages downloaded roughly 117,000 times a week.
Shai Hulud returns wearing a Red Hat
Researchers have uncovered a new Shai-Hulud malware variant hiding in Red Hat npm packages that now also gathers Google Cloud and Azure identities, an addition to its previous credential-snatching behavior.
Attackers Hijack Red Hat npm Scope to Steal Cloud Secrets
Attackers backdoored 32 packages in Red Hat's official npm scope to steal cloud and CI secrets
Supply Chain Attack Hits 32 Red Hat NPM Packages
Hackers published 96 malicious package versions, injected with a credential-stealing worm similar to Mini Shai-Hulud.
Red Hat npm packages compromised in new Mini Shai-Hulud malware wave - Help Net Security
Unknown attackers have compromised 30+ Red Hat Cloud Services npm packages with malware that goes after developers' secrets.
Red Hat npm packages compromised to steal developer credentials
More than 30 npm packages under Red Hat's '@redhat-cloud-services' namespace were compromised in a supply-chain attack that distributed a new variant of the Shai-Hulud credential-stealing malware, dubbed "Miasma."
Part of the PlainSec briefing for 2026-05-30