Blogs

Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud

Socket

Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Visit Site

Blogs Socket

BlogsOpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain AttackSocket BlogsHappy Birthday, Shai-HuludSocket BlogsLarge-Scale GitHub Actions Abuse Powers a Distributed cPanel and WHM Exploitation CampaignSocket BlogsSuno Breached via Shai-Hulud Worm, Leaked Code Exposes AI Music ScrapingSocket BlogsIntroducing Dependency Divergence GitHub ActionSocket BlogsPolinRider Spreads Through Compromised GitHub Accounts and PackagistSocket BlogsLooping by Zapier: Repeat actions for itemsZapier NewsIntegrate Jupyter Notebooks with GitHubThenewstack BlogsPulumi Neo Now Supports AGENTS.mdPulumi BlogsHow AI Assistants Can Decode GitHub Repos for UI WritersDocker LearnBuild Your Own PluginVercel ResourcesGitHub - MintlifyMintlify BlogsHow Beyond Retro scaled its retail operations trainingSynthesia BlogsUpdated and Ongoing Supply Chain Attack Targets CrowdStrike npm PackagesSocket ResearchState of DevSecOpsDatadoghq Products & ServicesBits InvestigationDatadoghq ResearchState of Cloud SecurityDatadoghq NewsStreaming to be enabled by default for all Node.js Vercel Functions - VercelVercel ResourcesHow to Fully Delete a Git Repository Created with Init? | Better Stack CommunityBetterstack BlogsSupply Chain Attack on Axios Pulls Malicious Dependency from npmSocket