← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 26, 2026 · 14:19via BleepingComputer

GitHub Actions re-enabled with Mini Shai-Hulud payload still active

Brief

Two third-party GitHub Actions previously compromised in a Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for more than a week despite still pointing to malicious code. [... ]

Read more on BleepingComputer→