ATT&CKSoftwareShai-Hulud

Shai-Hulud

S9008

Malware.View on attack.mitre.org

About this malware

Shai-Hulud is a supply chain worm, first reported in September 2025, that spreads through code repositories, including GitHub and NPM packages. It exploits CI/CD pipeline dependencies to propagate to victims and poisons the supply chain by publishing malicious packages. Once inside a victim environment, Shai-Hulud steals credentials and access tokens from compromised repository accounts and exfiltrates them to attacker-controlled servers via encoded GitHub Actions workflows.

Techniques used33

Procedure examples33

TechniqueProcedure example
T1027
Obfuscated Files or Information

Shai-Hulud has utilized double-base64 encoding to store stolen secrets within the Github Action Logs within the victim account. Shai-Hulud has also leveraged three layers of base64 encoding of exfiltrated data for anti-forensic purposes.

T1036.005
Match Legitimate Resource Name or Location

Shai-Hulud has masqueraded as a legitimate Bun installer.

T1036.009
Break Process Trees

Shai-Hulud has augmented its installation process by having its original install process exit cleanly to provide the user with the illusion that the service is installed normally.

T1041
Exfiltration Over C2 Channel

Shai-Hulud has used POST to exfiltrate secrets from the victim environment to an attacker-controlled URL.

T1059.001
PowerShell

Shai-Hulud has utilized PowerShell `Invoke-WebRequest` to download and install the malicious payload.

T1059.004
Unix Shell

Shai-Hulud has utilized Linux shell commands to modify configuration files.

T1059.007
JavaScript

Shai-Hulud has used JavaScript to create JSON file output and run scripts using node.js.

T1071.001
Web Protocols

Shai-Hulud has utilized curl to install Bun over HTTPS.

T1078.004
Cloud Accounts

Shai-Hulud has leveraged compromised accounts to log into cloud services to access cloud hosted repositories.

T1082
System Information Discovery

Shai-Hulud has gathered victim system information.

T1098
Account Manipulation

Shai-Hulud has modified GitHub account settings for private repositories and changed them to public.

T1105
Ingress Tool Transfer

Shai-Hulud has downloaded packages from code repositories. Shai-Hulud has also downloaded and executed the secrets-discovery tool TruffleHog to gather sensitive data.

T1119
Automated Collection

Shai-Hulud has the ability to automatically collect host data, secrets, system information, and endpoints.

T1195.001
Compromise Software Dependencies and Development Tools

Shai-Hulud has published itself on compromised code repository maintainers within infected packages in attempts to propagate to other victims. Shai-Hulud has also modified versions of code packages.

T1213.003
Code Repositories

Shai-Hulud has downloaded existing packages from code repositories and extracted data stored within them.

View all 33 procedure examples

Groups that use it0

None recorded.

Campaigns0

None recorded.

References7

  1. Aikido Shai-Hulud September 2025 Open source
    Charlie Eriksen. (2025, September 16). S1ngularity/nx attackers strike again. Retrieved April 9, 2026.
  2. Microsoft Shai-Hulud December 2025 Open source
    Microsoft Defender Security Team. (n.d.). Shai-Hulud 2.0: Guidance for detecting, investigating, and defending against the supply chain attack. Retrieved April 9, 2026.
  3. Netskope Shai-Hulud November 2025 Open source
    Gianpietro Cutolo. (2025, November 26). Shai-Hulud 2.0: Aggressive, Automated, and Fast Spreading. Retrieved April 9, 2026.
  4. Palo Alto Unit 42 Shai-Hulud November 2025 Open source
    Justin Moore. (2025, November 25). "Shai-Hulud" Worm Compromises npm Ecosystem in Supply Chain Attack (Updated November 26). Retrieved April 9, 2026.
  5. Socket Shai-Hulud November 2025 Open source
    Socket Research Team. (2025, November 24). Shai Hulud Strikes Again (v2). Retrieved April 9, 2026.
  6. Socket Shai-Hulud Trufflehog September 2025 Open source
    Socket Research Team. (2025, September 15). Popular Tinycolor npm Package Compromised in Supply Chain Attack Affecting 40+ Packages. Retrieved April 9, 2026.
  7. Wiz Shai-Hulud September 2025 Open source
    Merav Bar, Rami McCarthy, Barak Sharoni. (2025, September 16). Shai-Hulud: Ongoing Package Supply Chain Worm Delivering Data-Stealing Malware. Retrieved April 9, 2026.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.