Shai-Hulud worm makes jump to AI infrastructure with Tensorlake compromise
The Shai-Hulud credential-stealing worm has made the jump to AI infrastructure, compromising the Tensorlake npm package, The Register reports. The malicious code was detected within minutes of the npm release, though the full impact is still unknown.