How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Shai-Hulud Miasma: Inside the Compromise of Red Hat Packages

calendar_today June 5, 2026 person Roshan Piyush domain split

On June 1, 2026, security researchers discovered that 32 packages in the @redhat-cloud-services npm namespace were compromised with a credential-stealing worm called Miasma. The attack exploited a hijacked Red Hat employee’s GitHub account to inject malicious code into official packages, bypassing code review processes. The malware leveraged trusted CI/CD pipelines to distribute itself and steal credentials from infected systems.

open_in_new Read original post