HACKOBAR_item
[VENTUREBEAT]score: 0.29

Shai-Hulud worm hits 172 npm and PyPI packages, steals AI tokens

May 13, 2026
The Mini Shai-Hulud worm compromised 172 npm and PyPI packages, exfiltrating AWS keys, GitHub PATs, and Claude/Kiro AI agent tokens via .claude/settings.json persistence and CI runner secret access.