掃碼下載
BTC $63,848.10 +1.83%
ETH $1,665.57 +1.18%
BNB $606.63 +1.26%
XRP $1.12 +1.63%
SOL $67.54 +2.94%
TRX $0.3138 -1.93%
DOGE $0.0878 +3.46%
ADA $0.1713 +3.23%
BCH $204.97 +2.77%
LINK $7.85 +1.29%
HYPE $59.97 +5.87%
AAVE $64.54 +1.51%
SUI $0.7501 +0.10%
XLM $0.1892 +1.36%
ZEC $416.33 -0.97%
BTC $63,848.10 +1.83%
ETH $1,665.57 +1.18%
BNB $606.63 +1.26%
XRP $1.12 +1.63%
SOL $67.54 +2.94%
TRX $0.3138 -1.93%
DOGE $0.0878 +3.46%
ADA $0.1713 +3.23%
BCH $204.97 +2.77%
LINK $7.85 +1.29%
HYPE $59.97 +5.87%
AAVE $64.54 +1.51%
SUI $0.7501 +0.10%
XLM $0.1892 +1.36%
ZEC $416.33 -0.97%

Shai-Hulud Hades 新變種攻擊 PyPI,利用 Python 到 Bun 跨運行時鏈竊取憑證

2026-06-12 20:57:59
收藏

ChainCatcher 消息,据慢雾披露,发现 Shai-Hulud Hades 新變種正在攻擊 PyPI。惡意包會投放 .pth 檔案,在 Python 啟動時自動執行,並檢測本地是否安裝 Bun;若未安裝,則從 GitHub Releases 下載官方 Bun 二進制檔案,再執行多層混淆 JavaScript 載荷,用於竊取 GitHub、npm、AWS 及雲服務憑證。

慢雾稱,該變種與此前 Shai-Hulud 攻擊使用相同 RSA 公鑰和基礎設施,並具備加密外傳、持久化、CI/CD 注入及 GitHub Actions 注入等能力。

app_icon
ChainCatcher 與創新者共建Web3世界