Researchers Spot Modified Shai-Hulud Worm Testing Payload on npm Registry
- Posted on December 31, 2025
- By The Hacker News
- 3 Views
Researchers Spot Modified Shai-Hulud Worm Testing Payload on npm Registry

A new Shai-Hulud npm strain and a fake Jackson Maven package show how attackers abuse trusted dependencies to steal secrets and spread malware.