{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreid6rrosuhvnqajcmruj256rmeoup6yev23fy5ggxj6nwgg6jprnme",
"uri": "at://did:plc:ghkvexthfanuyq7fb5veq6tw/app.bsky.feed.post/3mnb55dlxk2g2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreigiqv4xswxjmb6aqul6s6in4dauu3dxocekegf4dzgvvoy4bn25re"
},
"mimeType": "image/png",
"size": 73905
},
"path": "/2026/06/miasma-supply-chain-attack-compromises.html",
"publishedAt": "2026-06-01T17:40:28.000Z",
"site": "https://thehackernews.com",
"tags": [
"@redhat-cloud-services"
],
"textContent": "A new Mini Shai-Hulud supply chain attack campaign, codenamed Miasma, has compromised @redhat-cloud-services packages to steal credentials and secrets from developer machines and deliver a self-propagating worm.\n\n\"This is effectively a Mini Shai-Hulud campaign: it uses the same core tactics of install-time execution, credential harvesting, CI/CD targeting, encrypted exfiltration, and potential",
"title": "Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm"
}