INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

GitHub Actions Resumed Executing Shai-Hulud Malware After Compromise

| 2026-09-25 14:44 LOW HIGH MALWARE & BOTNETS
Executive Summary
AI-generated
On September 16, 2026, two GitHub Actions repositories became accessible again after being compromised months earlier during the May 2026 Mini Shai-Hulud campaign. The affected entities are approximately unknown in number and include Visiting either of the repositories now shows a message from GitHub Staff due to a violation of their terms of service. The attack works by utilizing overlaps in exfiltration domains ("t.m-kosche[.]com") used in the compromised workflows and npm packages from the @antv ecosystem, linking it to the Mini Shai-Hulud activity cluster. As of now, the malicious code remains active within the affected repositories, posing severe software supply chain security risks without requiring new exploits or infrastructure setup.
Technical Mitigations AI-generated
• Pin affected GitHub Actions to a known-clean SHA that predates May 18, 2026. • Remove actions and treat "actions-cool/[email protected]" as affected. • Rotate all exposed secrets. • Review workflow run history for newly successful runs after September 16, 2026.
Technical Observables Login Required
Indicators of Compromise (IoCs) Protected

Raw threat telemetry, malicious IP addresses, file hashes, and direct VirusTotal correlation are restricted to authenticated users.

t•••••.com
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Shai-HuludShai-HuludMini Shai-HuludMini Shai-Hulud
Target & Sectors
Global Scope technologytechnology
Incident Timeline
‎March 2026
Threat actors resumed executing Mini Shai-Hulud malware through compromised GitHub Actions in March 2026.
‎May 2026
Mini Shai-Hulud malware was previously compromised in May 2026 and its associated GitHub Actions repositories became accessible again on September 25, 2026.
malware Mini Shai-Hulud
tactic T1588.001 - Malware
organisation GitHub Actions
general_metric 25 Sep
general_metric 2026 
organisation GitHub
‎May 18, 2026
Two GitHub Actions workflows were compromised on May 18, 2026, to run malicious code that harvested sensitive credentials and exfiltrated details to an attacker-controlled server linked to the Mini Shai-Hulud activity cluster.
organisation CI
organisation SHA
organisation Socket
organisation The Hacker News
organisation Rotate
‎May 18
Threat actors introduced malicious content on GitHub Actions that was later referenced by workflow versions, causing the compromised workflows to resume executing Mini Shai-Hulud malware.
‎September 2026
Threat actors used compromised GitHub Actions to resume executing the Mini Shai-Hulud malware.
‎September 16, 2026
The compromised GitHub Actions repositories became accessible again on September 16, 2026.
‎Sep 16, 2026
Threat actors successfully regained control of the compromised GitHub Actions, which resumed executing the Mini Shai-Hulud malware.
‎2026/09/18
Mini Shai-Hulud malware was executed by compromised GitHub Actions repositories that became accessible again on September 25, 2026.
malware Mini Shai-Hulud
tactic T1588.001 - Malware
organisation GitHub Actions
general_metric 25 Sep
general_metric 2026 
‎Sep 25, 2026
Threat actors successfully regained control of the compromised GitHub Actions, which then resumed executing the Mini Shai-Hulud malware.
‎2026/09/25
An attacker hijacked an active AI coding-assistant session at a software-as-a-service provider and used it to install an infostealer through a poisoned PyPI package.
organisation CI
infrastructure Visual Studio Code
organisation Attacker Hijacks AI Coding
organisation PyPI
organisation Mandiant
organisation Keep
organisation API
Tactical Metrics
Metrics
infrastructure
‎Visual Studio Code
Affected Product