Weekly review

ThreatNoir Weekend Brief — June 7

2026-06-07Afternoon4 articles
Audio
Listen to the episode

Afternoon Review in IT Security — June 7, 2026

The threat landscape continues to shift rapidly as supply chain attacks reach new ecosystems and AI-driven vulnerability discovery accelerates security research. Today's briefing covers a major PyPI compromise affecting bioinformatics tools, a data breach at Baker Distributing, record-breaking vulnerability discoveries in FFmpeg, and fresh evidence of the Miasma worm's expansion into Microsoft's GitHub infrastructure.

Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave

Socket has detected a coordinated PyPI compromise involving 37 malicious wheel artifacts across 19 packages, representing the latest evolution of the Shai-Hulud and Miasma supply chain attack family. The compromised releases shipped a *-setup.pth file designed to execute automatically during Python startup, download the Bun JavaScript runtime, and run an obfuscated JavaScript payload named _index.js. Socket's AI malware detection system identified the malicious package cluster within minutes of publication.

The attack exploits Python's legitimate .pth file feature, which supports executable import statements that run at every Python startup regardless of whether the corresponding package is imported. This creates a delayed execution trigger where the next python, pip, test run, notebook kernel, CI job, or package-management command may process the malicious code. The payload targets high-value developer and CI/CD secrets including GitHub tokens, npm and PyPI credentials, AWS and cloud provider identities, Kubernetes service accounts, Vault tokens, SSH keys, Docker configurations, and shell histories. The campaign has been branded with Hades-themed GitHub exfiltration markers, including repository descriptions referencing "Hades - The End for the Damned" and generated repository-name components such as stygian, tartarean, cerberus, charon, and persephone.

The affected packages include widely used bioinformatics tools such as dynamo-release, spateo-release, coolbox, and napari-ufish, which collectively account for hundreds of thousands of downloads. Socket is tracking 448 affected artifacts across npm and PyPI, comprising 411 npm artifacts across 106 packages and 37 malicious PyPI wheels across 19 projects. The payload includes multiple exfiltration paths, including direct HTTPS channels configured to impersonate Anthropic's API host as network-log camouflage, GitHub repository creation with encrypted results, and GitHub Actions artifact uploads. The recovered persistence indicators suggest the attack may serve as an entry point into developer automation, AI developer toolchains, and MCP configuration environments. Source: Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave

Baker Distributing Data Breach Exposes 103K Email Addresses

Baker Distributing has suffered a data breach resulting in the exposure of 103,000 unique email addresses. The breach was allegedly conducted by the ShinyHunters threat group and the compromised data appeared on their public disclosure platform. The incident adds to the growing list of organizations affected by credential theft and data exfiltration campaigns. Source: Baker Distributing Data Breach

AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs

A security startup has reported the discovery of 21 previously unknown vulnerabilities in FFmpeg, the media library embedded in nearly all software that processes video, all identified by an autonomous AI agent. The same week, Google released Chrome 149 with patches for 429 security bugs, marking the highest number of vulnerabilities addressed in a single Chrome release. The contrast between AI-driven discovery and traditional vulnerability response highlights a growing asymmetry in the security landscape, where automated tools are uncovering threats faster than conventional patch cycles can address them. Source: AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs

Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack

Microsoft's GitHub repositories have become the latest target of the Miasma self-replicating supply chain attack campaign. The incident impacted 73 Microsoft repositories across four GitHub organizations, including Azure, Azure-Samples, Microsoft, and MicrosoftDocs. GitHub has disabled access to the affected repositories in response to the compromise. The attack demonstrates the worm's capability to propagate across high-profile infrastructure and establish persistence within major technology vendors' development environments. Source: Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack

Today's incidents underscore the evolving nature of supply chain threats, the increasing sophistication of cross-ecosystem attacks, and the acceleration of vulnerability discovery through artificial intelligence. Organizations should prioritize credential rotation, artifact inspection, and ecosystem-specific monitoring across package managers, version control systems, and CI/CD pipelines.

Sources & IOCs

Source articles and extracted indicators (defanged where appropriate).

Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave
Malware3
  • Hades
    Campaign theme/marker
  • Miasma
    Malware family name
  • Shai-Hulud
    Malware family name
Domain1
  • api.anthropic.com
    Exfiltration camouflage destination
URL8
  • hxxps://socket[.]dev/supply-chain-attacks/miasma-mini-shai-hulud-supply-chain-attack
    Campaign tracking page
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-linux-x64[.]zip
    Bun runtime download URL
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-darwin-x64[.]zip
    Bun runtime download URL
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-windows-x64[.]zip
    Bun runtime download URL
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-linux-aarch64[.]zip
    Bun runtime download URL
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-darwin-aarch64[.]zip
    Bun runtime download URL
  • hxxps://github[.]com/oven-sh/bun/releases/download/bun-v1[.]3[.]13/bun-windows-aarch64[.]zip
    Bun runtime download URL
  • hxxps://api[[.]]anthropic[[.]]com/v1/api
    Abused as camouflage exfiltration destination
SHA-2563
  • dc48b09b2a59…
    _index.js variant 1 hash
  • e1342a80d4b5…
    _index.js variant 2 hash
  • c53976606255…
    *-setup.pth hash
AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
CVE10