New Shai-Hulud worm scans 469 credential paths
A new variant of the Shai-Hulud infostealer checks 469 credential locations on developer machines, up 280 from the previous version's 189. The worm reads files the logged-in user can access, including MCP server and AI coding agent configs, and steals package-publishing tokens.
- Path count grew from 189 to 469, adding 280 new credential locations
- Targets include .env files, shell history, CI/CD configs, CLI caches, IDE and AI tool settings
- A token stolen from ~/.npmrc lets attackers distribute malware via trusted packages
- GitGuardian counted 28.65 million new hardcoded secrets on public GitHub in 2025
Read next
Security