<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Mini Shai Hulud</title><description>Cybersecurity articles tagged #Mini Shai Hulud on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Malware Evades AI Analysis with &apos;Forbidden Text&apos; Tactics</title><link>https://runtimerebel.com/blog/malware-evades-ai-analysis-with-forbidden-text-tactics</link><guid isPermaLink="true">https://runtimerebel.com/blog/malware-evades-ai-analysis-with-forbidden-text-tactics</guid><description>Threat actors embed &apos;forbidden&apos; text in malware to confuse AI analysis tools, targeting bioinformatics and MCP developers.</description><pubDate>Thu, 25 Jun 2026 05:28:25 GMT</pubDate><category>AI Evasion</category><category>Malware Analysis</category><category>Mini Shai Hulud</category><category>Miasma</category><category>Hades Worms</category><category>Bioinformatics Security</category><category>Supply Chain Security</category></item><item><title>TeamPCP Campaign Update: Mini Shai-Hulud Framework Gains Adoption</title><link>https://runtimerebel.com/blog/teampcp-campaign-update-mini-shai-hulud-framework-gains-adoption</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-campaign-update-mini-shai-hulud-framework-gains-adoption</guid><description>Analysis of the TeamPCP supply chain campaign, the open-sourcing of the Mini Shai-Hulud framework, and its adoption by diverse threat actor groups in 2026.</description><pubDate>Mon, 08 Jun 2026 17:14:51 GMT</pubDate><category>TeamPCP</category><category>Mini Shai Hulud</category><category>Supply Chain Attack</category><category>Vulnerability Scanner</category><category>Threat Intelligence</category></item><item><title>Miasma Supply Chain Attack: Defending Red Hat npm Environments</title><link>https://runtimerebel.com/blog/miasma-supply-chain-attack-defending-red-hat-npm-environments</link><guid isPermaLink="true">https://runtimerebel.com/blog/miasma-supply-chain-attack-defending-red-hat-npm-environments</guid><description>Analysis of the Miasma supply chain attack targeting Red Hat npm packages with credential-stealing worms. Technical details and mitigation guide for SOC teams.</description><pubDate>Mon, 01 Jun 2026 21:14:46 GMT</pubDate><category>Red Hat</category><category>NPM</category><category>Miasma</category><category>Supply Chain Attack</category><category>Credential Theft</category><category>Mini Shai Hulud</category></item><item><title>320+ @antv NPM Packages Compromised in Mini Shai-Hulud Attack</title><link>https://runtimerebel.com/blog/320-antv-npm-packages-compromised-in-mini-shai-hulud-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/320-antv-npm-packages-compromised-in-mini-shai-hulud-attack</guid><description>A maintainer account compromise has led to a major supply chain attack against Alibaba’s @antv NPM namespace, impacting over 320 visualization packages.</description><pubDate>Wed, 20 May 2026 13:06:33 GMT</pubDate><category>NPM</category><category>Mini Shai Hulud</category><category>Antv</category><category>Supply Chain Security</category><category>JavaScript</category></item><item><title>TeamPCP Jenkins Plugin Compromise and Mini Shai-Hulud Worm Analysis</title><link>https://runtimerebel.com/blog/teampcp-jenkins-plugin-compromise-and-mini-shai-hulud-worm-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-jenkins-plugin-compromise-and-mini-shai-hulud-worm-analysis</guid><description>TeamPCP escalates its supply chain campaign with a confirmed Jenkins plugin compromise and a self-spreading worm targeting the npm and PyPI ecosystems.</description><pubDate>Mon, 18 May 2026 20:38:04 GMT</pubDate><category>TeamPCP</category><category>Jenkins</category><category>NPM</category><category>PyPI</category><category>Mini Shai Hulud</category><category>Supply Chain Attack</category></item><item><title>Mini Shai-Hulud Worm Compromises TanStack and Mistral AI Packages</title><link>https://runtimerebel.com/blog/mini-shai-hulud-worm-compromises-tanstack-and-mistral-ai-packages</link><guid isPermaLink="true">https://runtimerebel.com/blog/mini-shai-hulud-worm-compromises-tanstack-and-mistral-ai-packages</guid><description>TeamPCP actor compromises major npm and PyPI packages including TanStack and Mistral AI via the Mini Shai-Hulud worm, deploying profiling malware.</description><pubDate>Tue, 12 May 2026 09:04:37 GMT</pubDate><category>TeamPCP</category><category>Mini Shai Hulud</category><category>NPM</category><category>PyPI</category><category>Supply Chain Attack</category></item><item><title>TeamPCP Targets SAP npm Packages: Mini Shai-Hulud Supply Chain Attack</title><link>https://runtimerebel.com/blog/teampcp-targets-sap-npm-packages-mini-shai-hulud-supply-chain-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-targets-sap-npm-packages-mini-shai-hulud-supply-chain-attack</guid><description>TeamPCP broadens supply chain attacks, compromising npm packages in SAP&apos;s cloud development ecosystem with the &apos;Mini Shai-Hulud&apos; malicious code injection.</description><pubDate>Fri, 01 May 2026 00:54:59 GMT</pubDate><category>TeamPCP</category><category>SAP</category><category>NPM</category><category>Supply Chain Attack</category><category>Mini Shai Hulud</category><category>Cloud Security</category></item><item><title>SAP NPM Supply Chain Attack: Analyzing the Mini Shai-Hulud Campaign</title><link>https://runtimerebel.com/blog/sap-npm-supply-chain-attack-analyzing-the-mini-shai-hulud-campaign</link><guid isPermaLink="true">https://runtimerebel.com/blog/sap-npm-supply-chain-attack-analyzing-the-mini-shai-hulud-campaign</guid><description>Security researchers identified a malicious supply chain attack targeting SAP via NPM packages using the Bun runtime to evade traditional EDR detection.</description><pubDate>Thu, 30 Apr 2026 16:38:51 GMT</pubDate><category>SAP</category><category>NPM Security</category><category>Mini Shai Hulud</category><category>Dependency Confusion</category><category>Bun Runtime</category><category>DevSecOps</category></item><item><title>SAP npm Packages Compromised by “Mini Shai-Hulud” Malware</title><link>https://runtimerebel.com/blog/sap-npm-packages-compromised-by-mini-shai-hulud-malware</link><guid isPermaLink="true">https://runtimerebel.com/blog/sap-npm-packages-compromised-by-mini-shai-hulud-malware</guid><description>The Mini Shai-Hulud campaign targets SAP cloud application developers with credential-stealing npm packages. Learn how to detect and mitigate this threat.</description><pubDate>Wed, 29 Apr 2026 16:37:44 GMT</pubDate><category>SAP</category><category>NPM</category><category>Mini Shai Hulud</category><category>Supply Chain Attack</category><category>Wiz</category><category>Credential Theft</category></item></channel></rss>