Home
Categories
EXPLORE
Comedy
True Crime
Society & Culture
History
Religion & Spirituality
Music
Business
About Us
Contact Us
Copyright
© 2024 PodJoint
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts211/v4/87/c2/f8/87c2f8ef-8e03-63a6-264f-698f5239d96e/mza_17716733432111276097.jpg/600x600bb.jpg
Threat Talks - Your Gateway to Cybersecurity Insights
Threat Talks
98 episodes
2 days ago
Threat Talks is your cybersecurity knowledge hub. Unpack the latest threats and explore industry trends with top experts as they break down the complexities of cyber threats. We make complex cybersecurity topics accessible and engaging for everyone, from IT professionals to every day internet users by providing in-depth and first-hand experiences from leading cybersecurity professionals. Join us for monthly deep dives into the dynamic world of cybersecurity, so you can stay informed, and stay secure!
Show more...
Tech News
News
RSS
All content for Threat Talks - Your Gateway to Cybersecurity Insights is the property of Threat Talks and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
Threat Talks is your cybersecurity knowledge hub. Unpack the latest threats and explore industry trends with top experts as they break down the complexities of cyber threats. We make complex cybersecurity topics accessible and engaging for everyone, from IT professionals to every day internet users by providing in-depth and first-hand experiences from leading cybersecurity professionals. Join us for monthly deep dives into the dynamic world of cybersecurity, so you can stay informed, and stay secure!
Show more...
Tech News
News
https://img.transistor.fm/OXGUftDWeGRXdOYHDVsj9YVn5daSV0XBRlLYZmqINTA/rs:fill:0:0:1/w:1400/h:1400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS9kNWU1/NTAxMDMwMWRhYjRm/YjVkNjg4MGQzZTZk/ODIwYi5wbmc.jpg
The Npm Worm Outbreak
Threat Talks - Your Gateway to Cybersecurity Insights
18 minutes
2 days ago
The Npm Worm Outbreak

The world’s biggest open-source ecosystem - npm - faced its first self-spreading worm.


They called it Shai Hulud.


It didn’t just infect one package. It infected developers themselves.


When a maintainer got phished, the worm harvested credentials, hijacked tokens, and created new CI/CD workflows to keep spreading - automatically.


No command-and-control. No manual uploads. Just a chain reaction across the npm registry.


And while the world was busy shouting about “2.6 billion downloads affected,” this real threat was quietly exfiltrating GitHub, cloud, and npm secrets - right under everyone’s nose.


This isn’t just another npm story.


It’s the first-ever self-replicating supply chain worm - and a wake-up call for every developer and security team building in the open.


Watch host Rob Maas (Field CTO, ON2IT) and Yuri Wit (SOC Analyst, ON2IT) 

break down how it started, how it spread, and how to make sure your pipeline isn’t the next one to go viral.


  • (00:00) - Intro, welcome & what npm is
  • (00:01) - Crypto drainer: how it worked, maintainer phish & real impact
  • (00:05) - “Shai Hulud” worm: credential harvesting & package spread
  • (00:07) - Hype vs reality: the “2.6 billion downloads” myth & media reaction
  • (00:10) - Defenses: dependency strategy & CI/CD workflow alerts
  • (00:14) - Secrets hygiene, OS targeting (Windows exit), end-user/EDR tips & takeaways

Key Topics Covered
  • How a maintainer phish and TOTP capture led to a crypto drainer in npm.
  • Why Shai Hulud’s credential harvesting + CI/CD persistence makes it high-impact.
  • Practical defenses: pin/review dependencies, CI/CD change alerts, secret rotation, egress monitoring.
  • What developers vs. end users can (and can’t) do in supply-chain attacks.

Got your attention? 

Subscribe to Threat Talks and turn on notifications for more content on the world’s leading cyber threats and trends.


Guest and Host Links: 

Rob Maas (Field CTO, ON2IT): https://www.linkedin.com/in/robmaas83/  

Yuri Wit (SOC Analyst, ON2IT): https://www.linkedin.com/in/yuriwit/  

 

Additional Resources
 Threat Talks: https://threat-talks.com/
ON2IT (Zero Trust as a Service): https://on2it.net/
AMS-IX: https://www.ams-ix.net/ams
npm: https://www.npmjs.com/
Node.js: https://nodejs.org/
GitHub Docs: Actions & Workflows: https://docs.github.com/actions
MetaMask: https://metamask.io/
OWASP Dependency Management: https://owasp.org/www-project-dependency-check/
SLSA Supply-chain Levels for Software Artifacts: https://slsa.dev/

Click here to view the episode transcript.

Threat Talks - Your Gateway to Cybersecurity Insights
Threat Talks is your cybersecurity knowledge hub. Unpack the latest threats and explore industry trends with top experts as they break down the complexities of cyber threats. We make complex cybersecurity topics accessible and engaging for everyone, from IT professionals to every day internet users by providing in-depth and first-hand experiences from leading cybersecurity professionals. Join us for monthly deep dives into the dynamic world of cybersecurity, so you can stay informed, and stay secure!