GitLab’s Vulnerability Research team has uncovered a new Python supply chain attack targeting PyPI, deploying the Shai-Hulud worm to steal credentials from CI/CD systems.
Malware driving attack includes "dead man's switch" that can harm user data.
All fields required
See what your team could do with a unified DevSecOps Platform
Find out which plan works best for your team
Learn about what GitLab can do for your team