<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Pacchetti npm di Red Hat compromessi in un attacco alla supply chain]]></title><description><![CDATA[<p>Pacchetti npm di Red Hat compromessi in un attacco alla supply chain</p><p>Oltre 30 pacchetti npm sotto il namespace '@redhat-cloud-services' di Red Hat sono stati compromessi in un attacco alla supply chain, distribuendo una nuova variante del malware "Shai-Hulud", denominata "Miasma".</p><p><div class="card col-md-9 col-lg-6 position-relative link-preview p-0">



<a href="https://www.bleepingcomputer.com/news/security/red-hat-npm-packages-compromised-to-steal-developer-credentials/" title="Red Hat npm packages compromised to steal developer credentials">
<img src="https://www.bleepstatic.com/content/hl-images/2025/10/02/redhat-header-vign.jpg" class="card-img-top not-responsive" style="max-height: 15rem;" alt="Link Preview Image" onerror="this.parentElement.remove()" />
</a>



<div class="card-body">
<h5 class="card-title">
<a class="text-decoration-none" href="https://www.bleepingcomputer.com/news/security/red-hat-npm-packages-compromised-to-steal-developer-credentials/">
Red Hat npm packages compromised to steal developer credentials
</a>
</h5>
<p class="card-text line-clamp-3">More than 30 npm packages under Red Hat's '@redhat-cloud-services' namespace were compromised in a supply-chain attack that distributed a new variant of the Shai-Hulud credential-stealing malware, dubbed </p>
</div>
<a href="https://www.bleepingcomputer.com/news/security/red-hat-npm-packages-compromised-to-steal-developer-credentials/" class="card-footer text-body-secondary small d-flex gap-2 align-items-center lh-2">



<img src="https://www.bleepstatic.com/favicon/bleeping.ico" alt="favicon" class="not-responsive overflow-hiddden" style="max-width: 21px; max-height: 21px;" onerror="this.remove()"/>





<p class="d-inline-block text-truncate mb-0">BleepingComputer <span class="text-secondary">(www.bleepingcomputer.com)</span></p>
</a>
</div></p><p><span><a href="/user/..%2Fcategory%2Flinux%40diggita.com">@<span>linux</span></a></span></p>]]></description><link>https://citiverse.it/topic/5ebca890-84fe-4abd-b5cb-56d794427a8b/pacchetti-npm-di-red-hat-compromessi-in-un-attacco-alla-supply-chain</link><generator>RSS for Node</generator><lastBuildDate>Wed, 10 Jun 2026 17:21:04 GMT</lastBuildDate><atom:link href="https://citiverse.it/topic/5ebca890-84fe-4abd-b5cb-56d794427a8b.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 02 Jun 2026 16:01:02 GMT</pubDate><ttl>60</ttl></channel></rss>