ThreatFox IOC Database

You are viewing the ThreatFox database entry for sha256_hash 62ee164b9b306250c1172583f138c9614139264f889fa99614903c12755468d0.

Database Entry


IOC ID:1667151
IOC: 62ee164b9b306250c1172583f138c9614139264f889fa99614903c12755468d0
IOC Type :sha256_hash
Threat Type :payload
Malware: Shai-Hulud
Confidence Level : Confidence level is high (95%)
Is compromised? : False
First seen:2025-12-04 06:09:48 UTC
Last seen:2026-05-15 15:55:18 UTC
UUID:13964525-d099-11f0-a341-42010aa4000a
Reporter duggusa
Reward 5 credits from ThreatFox
Tags:dugganusa github-actions npm shai-hulud-v2 Worm
Reference: https://analytics.dugganusa.com/api/v1/stix-feed

Avatar
duggusa
Shai-Hulud V2 variant. npm worm payload. GitHub Actions compromise via discussion.yaml workflow injection. MITRE: T1195.001.