Microsoft says it is investigating a Mistral AI PyPI package v2.4.6 compromise; the attack is likely part of the Mini Shai-Hulud supply chain attack (Etiido Uko/Tom's Hardware)
Techmeme [Unofficial]
May 12, 2026
Etiido Uko / Tom's Hardware: Microsoft says it is investigating a Mistral AI PyPI package v2.4.6 compromise; the attack is likely part of the Mini Shai-Hulud supply chain attack — The malware reportedly refused to run on Russian-language systems but could execute a destructive payload under certain geographic conditions.
Discussion in the ATmosphere