Jayson DeLancey
banner
delancey.dev
Jayson DeLancey
@delancey.dev
Head of Security Advocacy, Semgrep

🥑 #devrel 🔐 Security 🎙️ Audio & Video 🎬 Media Streaming 🎞 Animation 🤖 Robots 🏒 Hockey Analytics 🌋 Industrial IoT ☁️ Cloud APIs 🌎 Maps 🐍 Python 🤦‍♂️ JavaScript
Worse, this appears to have worm-like behavior, using credentials stolen in Shai-Hulud repositories to then also compromise additional packages.
September 16, 2025 at 7:08 AM