חזרה לפיד
newsמקור: The Hacker News3.9.2026

הישגיו של Shai-Hulud גדלו ל-469 מיקומי פרטי זיהוי פגיעים

Shai-Hulud's Reach Just Grew to 469 Credential Locations. Here's What That Means

הישגיו של Shai-Hulud גדלו ל-469 מיקומי פרטי זיהוי פגיעים

◆ סיכום AI

חוקרי GitGuardian גילו שווריאנט חדש של תולעת ה-Infostealer Shai-Hulud מסוגל לסרוק פרטי זיהוי (credentials) ב-469 מיקומים שונים. מיקומים אלו כוללים סביבות פיתוח, כלי CI/CD, תצורות ענן ואף קבצי תצורה של כלי AI. העלייה הדרסטית במספר המיקומים משקפת את הרחבת וקטורי התקיפה וההתמקדות באבטחת שרשרת האספקה.

# מהמקור

In early August, GitGuardian researchers found that a recent Shai-Hulud infostealer worm variant had evolved to scan for credentials across 469 locations across developer environments, Continuous Integration/Continuous Deployment (CI/CD) tooling, cloud configurations, and even AI tool configs. Earlier variants of the infostealer worm only checked 189 paths. The jump says a lot. Attackers have

#infostealer#credential-exposure#supply-chain#ai-security
קרא במקור