TGTGInsighttelegram intelligenceLIVE / telegram public index
← The Hacker News
The Hacker News avatar

TGINSIGHT POST

Post #8628

@thehackernews

The Hacker News

Views8,620Post view count
PostedMar 1903/19/2026, 07:45 AM
Post content

Post content

🛑 Shai-Hulud 2.0 ran code before security scans, quietly breaking CI/CD at the source. As Jonny Rivera from ActiveState explains, it stole cloud credentials and turned GitHub runners into attacker-controlled botnets—long before detection kicked in. Fix: control what enters the pipeline. 🔗 How curated catalogs stop pre-install attacks → https://thehackernews.com/expert-insights/2026/03/the-curated-catalog-biggest-defense.html