COMPAMIR
High-Purity Fact Pipeline
© 2026 COMPAMIR | Verified Intelligence
High-Purity Fact Pipeline
Red Hat
Global
June 2, 2026
Verified: June 2, 2026
"Threat actors compromised Red Hat's official npm repository channel to distribute malicious packages. The malware, dubbed 'Shai-Hulud', targets CI/CD credentials and sensitive cloud service tokens. Red Hat has removed the malicious packages and is investigating the impact."
Author: Hayley Denbraver and Jake Kouns
This book provides a comprehensive framework for understanding the vulnerabilities inherent in modern software supply chains, including package management systems like npm, which is critical for analyzing the Red Hat incident.
As an Amazon Associate, COMPAMIR earns from qualifying purchases.