Malicious NPM packages: Are you exposed?
ID: 6e18d004-642c-5cf7-be7f-06809b9b7d48
STIX ID: report--6e18d004-642c-5cf7-be7f-06809b9b7d48
Feed Name: Sysdig Blog
Threat Score
Sysdig Threat Research reported the discovery of Shai-Hulud, a novel self-replicating worm that rapidly infected hundreds of NPM packages, stole credentials, and propagated across additional packages; Sysdig is monitoring the campaign and publishing real-time intelligence via its Threat Intelligence Feed, including a Top 20 Malicious NPM Packages list and investigation queries to help organizations determine exposure and respond quickly.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
