مباشر الخميس، 17 سبتمبر 2026
عاجل
رياضة محليةتفسير رؤية الخالة في المنام وعلاقتها بتيسير أمور معطلةرياضة محليةمصادر: انطلاق دور الانعقاد الجديد لمجلس الشيوخ من العاصمة الإدارية الجديدةرياضة محليةأبرزها التدخين وإهمال التنظيف، عادات يومية تعجل بشيخوخة البشرةسياسةرئيس إحدى شركات الصلب: قرارات الحماية على البليت تتطلب الاستماع لأصحاب المصانعسياسةتجمع بين الجمال والجرأة.. هيدى كرم تخطف الأنظار بإطلالتهاسياسة«ده فشل ولا يجوز».. مجدي عبدالغني يكشف رأيه في أداء الأهلي واختيارات «عموتة»سياسةفاروق جعفر: تشكيل الأهلي يعتمد على الأسماء أكثر من قدرات اللاعبينسياسةبعد فرز 99% من الأصوات.. المعارضة السويدية من يسار الوسط تفوز بالانتخاباتسياسةهل يُنتقض الوضوء للمريض بالتخدير؟.. الإفتاء توضح الحكمرياضة محليةريمونتادا قاتلة، برايتون يقلب الطاولة على مانشستر يونايتد في كأس كاراباو ويفوز 2/3رياضة محليةبعد الكسر المفاجئ، شركة الفيوم تعلن انتهاء الصيانة وضخ مياه الشربرياضة محليةهل يتوقف خفض الفائدة في مصر؟.. خبيرة اقتصادية تكشف تأثير قرار الفيدراليرياضة محلية3 غيابات مؤثرة في قائمة الفراعنة بمعسكر مواجهتي أنجولا وجنوب السودان بتصفيات أفريقيارياضة محليةعلي محمود والبلعوطي ينضمان لأول مرة إلى منتخب مصر خلال معسكر سبتمبرسياسةعاجل..الخارجية الأمريكية: فرض عقوبات على مسؤولين في السلطة الفلسطينية وأعضاء في منظمة التحريرسياسةترامب يعتزم إطلاع دول الخليج على أفكار استراتيجية ما بعد الحرب مع إيرانرياضة محليةضبط حارس تحرش بفتاة داخل أسانسير عقار في مدينة نصرسياسةاتهام 12 شخصا من أصول عربية وأفغانية بالاحتيال بأكثر من 10 ملايين دولار عبر حضانات وهمية في كاليفورنياالعالمالمغرب وإسرائيل يتفقان على “فتح سفارات وتبادل سفراء” والخارجية الإسرائيلية تعلقرياضة محليةكأس كاراباو، إيفرتون يفوز على وولفرهامبتون بهدفرياضة محليةتفسير رؤية الخالة في المنام وعلاقتها بتيسير أمور معطلةرياضة محليةمصادر: انطلاق دور الانعقاد الجديد لمجلس الشيوخ من العاصمة الإدارية الجديدةرياضة محليةأبرزها التدخين وإهمال التنظيف، عادات يومية تعجل بشيخوخة البشرةسياسةرئيس إحدى شركات الصلب: قرارات الحماية على البليت تتطلب الاستماع لأصحاب المصانعسياسةتجمع بين الجمال والجرأة.. هيدى كرم تخطف الأنظار بإطلالتهاسياسة«ده فشل ولا يجوز».. مجدي عبدالغني يكشف رأيه في أداء الأهلي واختيارات «عموتة»سياسةفاروق جعفر: تشكيل الأهلي يعتمد على الأسماء أكثر من قدرات اللاعبينسياسةبعد فرز 99% من الأصوات.. المعارضة السويدية من يسار الوسط تفوز بالانتخاباتسياسةهل يُنتقض الوضوء للمريض بالتخدير؟.. الإفتاء توضح الحكمرياضة محليةريمونتادا قاتلة، برايتون يقلب الطاولة على مانشستر يونايتد في كأس كاراباو ويفوز 2/3رياضة محليةبعد الكسر المفاجئ، شركة الفيوم تعلن انتهاء الصيانة وضخ مياه الشربرياضة محليةهل يتوقف خفض الفائدة في مصر؟.. خبيرة اقتصادية تكشف تأثير قرار الفيدراليرياضة محلية3 غيابات مؤثرة في قائمة الفراعنة بمعسكر مواجهتي أنجولا وجنوب السودان بتصفيات أفريقيارياضة محليةعلي محمود والبلعوطي ينضمان لأول مرة إلى منتخب مصر خلال معسكر سبتمبرسياسةعاجل..الخارجية الأمريكية: فرض عقوبات على مسؤولين في السلطة الفلسطينية وأعضاء في منظمة التحريرسياسةترامب يعتزم إطلاع دول الخليج على أفكار استراتيجية ما بعد الحرب مع إيرانرياضة محليةضبط حارس تحرش بفتاة داخل أسانسير عقار في مدينة نصرسياسةاتهام 12 شخصا من أصول عربية وأفغانية بالاحتيال بأكثر من 10 ملايين دولار عبر حضانات وهمية في كاليفورنياالعالمالمغرب وإسرائيل يتفقان على “فتح سفارات وتبادل سفراء” والخارجية الإسرائيلية تعلقرياضة محليةكأس كاراباو، إيفرتون يفوز على وولفرهامبتون بهدف
أسعار
دولار أمريكي52.06EGPيورو60.07EGPجنيه إسترليني70.16EGPريال سعودي13.88EGPدرهم إماراتي14.18EGPدينار كويتي168.80EGPدينار أردني73.43EGPريال قطري14.30EGPليرة تركية1.07EGPيوان صيني7.74EGPذهب 247,154.89EGP/جمذهب 216,260.53EGP/جمذهب 185,366.17EGP/جمفضة106.12EGP/جم
دولار أمريكي52.06EGPيورو60.07EGPجنيه إسترليني70.16EGPريال سعودي13.88EGPدرهم إماراتي14.18EGPدينار كويتي168.80EGPدينار أردني73.43EGPريال قطري14.30EGPليرة تركية1.07EGPيوان صيني7.74EGPذهب 247,154.89EGP/جمذهب 216,260.53EGP/جمذهب 185,366.17EGP/جمفضة106.12EGP/جم
خبر عاجل

Shai-Hulud malware worms Red Hat npm package versions downloaded 80K times a week

Security researchers on Monday found dozens of Red Hat npm package releases infected with the Mini Shai-Hulud worm that TeamPCP cybercriminals recently open-sourced. The new supply chain attack hit at least 32 npm package releases published under the Red Hat Cloud Services namespace, according to security researchers from Google-owned Wiz, who traced the malware to one Red Hat employee’s compromised GitHub account. They said the affected packages are downloaded around 80,000 times a week. “The compromised account pushed malicious orphan commits to two RedHatInsights repositories, bypassing code review,” the threat hunters said in a Monday blog. “This happened across two waves of activity.” Wiz considers this a “live threat,” and says its researchers are actively monitoring it for any new developments. Socket, meanwhile, counted 95 affected package versions as of 11:00:22 UTC. The supply-chain security shop continues to monitor the ongoing attack and update the artifacts list – so be sure to check it out, and if your organization or any development pipelines have installed one of the poisoned versions, assume compromise and immediately rotate credentials. The compromised versions execute a hidden payload through a preinstall hook so that the malware automatically runs during the npm install process – before a developer imports or uses the package. “Based on Socket’s analysis, the payload is designed to collect GitHub Actions secrets, npm tokens, cloud credentials, Kubernetes and Vault material, SSH keys, Git credentials, and other sensitive files,” Socket’s research team wrote on Monday. “It also includes encrypted exfiltration logic and GitHub-based fallback mechanisms, indicating that the attacker was not only attempting to steal credentials, but also potentially enable further supply chain propagation.” A Red Hat spokesperson told The Register that the IBM-owned software firm is aware of the reports. “We immediately initiated an investigation and removed the packages from the npm registry,” the spokesperson said. “The packages are strictly limited to internal development, and the malicious code was never published for customer consumption via the console.redhat.com system. While our investigation is ongoing, we have not identified any impact to customer or partner environments or Red Hat production systems.” Both security firms say the malware resembles the Mini Shai-Hulud worm – but because TeamPCP open sourced the credential-stealing tool, it’s tough to say whether TeamPCP or a copycat crew is responsible for the latest developer-targeting supply chain infection. According to Wiz, the modifications look “largely cosmetic, with references to the Dune universe replaced by Greek mythology themes (i.e ‘spartan’), while the underlying functionality and tradecraft remain substantially similar.” One of the notable changes, the security sleuths said, is that the new variant adds data collectors for Google Cloud Platform and Microsoft Azure identities, and this new capability snarfs up all the identities that the infected machine has access to, as opposed to just stealing secrets from the cloud environments. This suggests “an increased attacker focus on gaining and leveraging access to the cloud itself,” Wiz warns. This variant also creates repositories containing the description “Miasma: The Spreading Blight.” And unlike earlier variants of the self-spreading worm that copied themselves, this one generates a uniquely encrypted payload for each infection, which makes hash-based indicators-of-compromise useful only for a specific package version. ®

المصدر: The Register

0 مشاهدة

أضف تعليقاً

لن يتم نشر عنوان بريدك الإلكتروني. الحقول الإلزامية مشار إليها بـ *