Compromised GitHub Actions Came Back Online and Resumed Executing Mini Shai-Hulud Malware
해킹된 GitHub Actions가 다시 온라인으로 복구되었으나 다시 비활성화됨.
Compromised GitHub Actions came back online but were disabled again.
AI가 선별한 아티클
해킹된 GitHub Actions가 다시 온라인으로 복구되었으나 다시 비활성화됨.
Compromised GitHub Actions came back online but were disabled again.
AI 코딩 도우미 세션이 해킹되어 100개 리포지토리에 악성 코드가 퍼졌다.
An attacker hijacked an AI coding assistant session and spread Shai-Hulud across 100 repositories.
Shai-Hulud 인포스틸러가 469개의 자격 증명 위치를 스캔하게 되었다.
The Shai-Hulud infostealer now scans 469 credential locations.
Shai-Hulud 공급망 공격으로 Keyv와 관련 라이브러리가 타격을 입었다.
Keyv and related libraries were compromised in the Shai-Hulud supply chain attack.
사이버 보안 연구자들이 정보 탈취 및 DDoS 악성코드를 포함한 4개의 npm 패키지를 발견했습니다.
Cybersecurity researchers found four npm packages containing info-stealing and DDoS malware.