Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks
A new wave of Shai-Hulud supply chain attacks has impacted over 471 NPM and PyPI packages, utilizing variants named Miasma and Hades. The attacks, originating from TeamPCP, involve credential harvesting and self-replication, targeting open-source software and potentially exposing sensitive data. This represents a significant escalation of the ongoing Shai-Hulud campaign, highlighting vulnerabilities in dependency management.
The recent surge in attacks leverages the self-replicating Shai-Hulud worm, initially identified in September 2025, targeting the open-source software community. Following the release of the worm's source code by TeamPCP in mid-May, numerous clones emerged, leading to coordinated attacks starting June 1st. The initial Red Hat incident involved 32 infected packages within their Hybrid Cloud Console JavaScript ecosystem, followed by the emergence of the Miasma variant, which aggressively scans systems for credentials and spreads via infected packages. Subsequently, a second wave, dubbed Hades, targeted PyPI packages, exhibiting a mutated execution chain designed to evade detection. These attacks underscore the risks associated with supply chain vulnerabilities and the importance of robust dependency scanning and management practices.