On June 1, 2026, over 30 official @redhat-cloud-services npm packages were compromised with a credential-stealing worm called Miasma, a variant of Mini Shai-Hulud open-sourced by TeamPCP.
Attack vector: compromised Red Hat employee GitHub account pushed orphan commits with malicious ci.yaml workflows. GitHub Actions OIDC trusted publishing was used to publish backdoored packages with valid SLSA provenance attestations.
Each package runs a 4.2 MB obfuscated preinstall hook stealing AWS, GCP, Azure, Vault, Kubernetes, GitHub, npm, SSH, and AI coding tool credentials. Exfiltration disguised as api.anthropic.com/v1/api traffic. Dead-man switch can wipe home directories if tokens revoked before persistence removal.
Affected versions include @redhat-cloud-services/frontend-components 7.7.2-7.7.3, rbac-client 9.0.3-9.0.4, and 29 other packages. Treat all secrets as compromised if any affected version was installed on or after June 1, 2026.