gensecaihq / Shai-Hulud-2.0-DetectorView on GitHub
Detect npm packages compromised in the Shai-Hulud 2.0 supply chain attack (Nov 2025). Scans for 790+ malicious packages, suspicious scripts, TruffleHog activity, SHA1HULUD runners, and secrets exfiltration. GitHub Action with SARIF support.
121Mar 16, 2026Updated this week

Alternatives and similar repositories for Shai-Hulud-2.0-Detector

Users that are interested in Shai-Hulud-2.0-Detector are comparing it to the libraries listed below

Sorting:

Are these results useful?