Shai-Hulud Escapes Package Installs and Spreads Wider
Shai-Hulud is no longer just a bad package install problem. It now moves through developer workflows — IDE hooks, poisoned caches, and GitHub Actions — so a clean dependency tree can still leave the environment compromised and its secrets exposed.
The latest campaign started in TanStack Router and OpenSearch, then spread to 400+ packages without needing npm installs. The reported blast radius includes cloud, AI, crypto, and developer credentials pulled from the affected workflow systems.
That shift breaks the usual dependency-audit response. Removing the package does not stop propagation if the cache, editor integration, or CI path is still carrying the worm forward.