A new variant of the Shai-Hulud Hades malware has been discovered targeting the PyPI package repository. It exploits a cross-runtime chain from Python to Bun to steal credentials, posing a significant threat to developers.
A new variant of the Shai-Hulud Hades malware has been discovered targeting the PyPI package repository. It exploits a cross-runtime chain from Python to Bun to steal credentials, posing a significant threat to developers.