
Red Hat NPM Accounts Compromised, Malicious Worm Steals Credentials
Red Hat's official NPM accounts were compromised, allowing a malicious worm named Shai-Hulud to spread and steal sensitive credentials like GitHub secrets and npm tokens. The attack targeted CI/CD systems, and while Red Hat claims no customer impact, researchers advise treating affected systems as compromised.








