Open Source · · 1 day

BeProduct npm package carried Shai-Hulud

JFrog listed 1 BeProduct npm package in the May 2026 Shai-Hulud wave. This record scopes those artifacts to their own official distribution surface.

Part of Shai-Hulud hits npm and PyPI campaign

BeProduct entered the May 2026 Shai-Hulud wave through one package with a long version trail. JFrog listed eighteen affected releases of @beproduct/nestjs-auth, all under the BeProduct npm namespace, making the package a compact but high-friction cleanup problem for teams that pinned older 0.1.x builds.

The value of the compromise was proximity. Authentication helper packages run in projects that already handle secrets, identity flows, and deployment credentials. In the Shai-Hulud model, an install on a developer machine or CI runner gave the payload a chance to harvest tokens and use any available publishing authority to seed more packages.

This record keeps the BeProduct artifact separate from the campaign rollup because exposure is package-specific. The campaign page carries TeamPCP's shared loader, credential-theft behavior, and propagation logic; this page preserves the exact package name, release list, registry paths, and May 11-12 window.

The practical response is to look for every affected @beproduct/nestjs-auth version in lockfiles, package caches, CI images, and artifact mirrors. Any environment that installed one of those releases should be treated as a credential-exposure point, even if the application using the package never reached production.

Notes

  • The network and payload indicators are the campaign-level set JFrog published for this wave, not observations of this package's own bytes. They identify the wave's infrastructure and persistence, and are recorded here so each affected distribution surface carries them. Where a record also lists indicators read from an acquired sample, those are marked as such.
  • Minimal campaign-linked record created to keep Shai-Hulud package evidence scoped by vendor, organization, maintainer account, or package distribution surface.

Appendix · Affected releases

0.1.18 sha256 87a7ba31…4faf82e5 download unavailable
0.1.19 sha256 7ea731c7…4d24b346 download unavailable
0.1.17 sha256 b66350bc…9f83dd0f download unavailable
0.1.16 sha256 37124ae0…0c38c6be download unavailable
0.1.15 sha256 637aa83c…2c3ea0b3 download unavailable
0.1.13 sha256 5e2135e6…87994705 download unavailable
0.1.14 sha256 070aa0f5…2aa6a675 download unavailable
0.1.8 sha256 809be289…90bd2d39 download unavailable
10 more versions
0.1.6 sha256 f49ca1a5…0d61215d download unavailable
0.1.9 sha256 1237229d…c0fc3b56 download unavailable
0.1.2 sha256 4d506f63…76e6275e download unavailable
0.1.5 sha256 169c3889…b292fcf7 download unavailable
0.1.11 sha256 0592e4ab…2b103d25 download unavailable
0.1.4 sha256 1aaadef3…ad964e14 download unavailable
0.1.3 sha256 41cfdb5c…691a4378 download unavailable
0.1.7 sha256 4cda3e30…449a0672 download unavailable
0.1.10 sha256 2299a211…4cdccdc6 download unavailable
0.1.12 sha256 50ad8849…93295c42 download unavailable

Indicators

  • file_sha256npm payload 29c729852fce5a53e30a1541d9fec79c915b2e13f1eda94a5978cf0aae0d88d9
  • file_sha256npm payload 2ec78d556d696e208927cc503d48e4b5eb56b31abc2870c2ed2e98d6be27fc96
  • file_sha256npm payload ab4fcadaec49c03278063dd269ea5eef82d24f2124a8e15d7b90f2fa8601266c
  • file_sha256npm payload d4a2086ea18f5e39cd867b8b06918a524eabb21d45ea98aad07357b98173458a
  • urlhttps://filev2.getsession.org/file/
  • domainseed1.getsession.org
  • domainseed2.getsession.org
  • domainseed3.getsession.org
  • domainapi.masscan.cloud
  • file~/.local/bin/gh-token-monitor.sh
  • file~/.config/systemd/user/gh-token-monitor.service
  • file~/Library/LaunchAgents/com.user.gh-token-monitor.plist
  • file~/.config/gh-token-monitor/
  • stringShai-Hulud: Here We Go Again
  • stringPUSH UR T3MPRR
  • stringFIRESCALE
  • commit_authorclaude@users.noreply.github.com

References

  1. Shai-Hulud: Here We Go Again - Worm by TeamPCP Hits NPM and PyPIresearch.jfrog.com
  2. TanStack npm Packages Compromised in Ongoing Mini Shai-Hulud Supply Chain Attack - Socketsocket.dev
  3. Mini Shai-Hulud Is Back: npm Worm Hits over 160 Packages, including Mistral and Tanstack - Aikidoaikido.dev
  4. Retained jsDelivr flat member manifest for @beproduct/nestjs-auth 0.1.16data.jsdelivr.com
  5. Retained jsDelivr flat member manifest for @beproduct/nestjs-auth 0.1.17data.jsdelivr.com
  6. Retained jsDelivr flat member manifest for @beproduct/nestjs-auth 0.1.18data.jsdelivr.com
  7. Triage report for the exact 0.1.16 router_init.js payloadtria.ge

Source record: oss/attacks/shai-hulud-beproduct-npm/meta.yaml