Threat Actor

Mini Shai-Hulud

Also known as: Miasma, Hades

Properties

summary
The threat actor behind the Mini Shai-Hulud/Miasma/Hades malware family expanded its supply chain attack to compromise additional npm packages and propagate into the Go ecosystem via GitHub Actions.
first_seen
2026-06-29T04:00:25.458760+00:00
last_seen
2026-06-29T04:00:25.458760+00:00
created_at
2026-06-29T04:00:25.458760+00:00
mention_count
1
evidence_url
https://thehackernews.com/2026/06/miasma-malware-targets-npm-packages-and.html
review_rule
R3_alias_match_only
target
npm ecosystem, GitHub Actions, Go ecosystem — software supply chain
provenance
news-scan
rule_version
2026-09-12.1
scan_confidence
0.65
suspected_origin
unknown
review_flag
alias 'Hades' matches existing RansomwareGroup 'hades' — weaker evidence than a name match, needs a human
status
pending

Explore this actor's full graph with Ninja Signal

Mini Shai-Hulud — Threat Actor Profile — Ninja Signal | Ninja Signal