Cybersecurity DEVELOPING
GitHub Actions re-enabled with Mini Shai-Hulud payload still active
First reported Source: BleepingComputerLast editorial activity
What happened
Two third-party GitHub Actions previously compromised in a Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for more than a week despite still pointing to malicious code.
Sources & evidence
- BleepingComputer Reporting source
GitHub Actions re-enabled with Mini Shai-Hulud payload still active ↗
https://www.bleepingcomputer.com/news/security/github-actions-re-enabled-with-mini-shai-hulud-payload-still-active/