Miasma & ShinyHunters Campaigns

Unknown pdf 2026-05-08T00:00:00

Abstract

This report details two high-impact cybersecurity incidents: the "Miasma" supply-chain attack involving the compromise of @redhat-cloud-services npm packages through the abuse of GitHub Actions Trusted Publishing, and the "ShinyHunters" breach of the Canvas Learning Management System, which resulted in the theft of 275 million educational records. Both incidents highlight critical vulnerabilities in CI/CD workflows and consumer-grade account mechanisms within massive software ecosystems.

Loading executive summary...
Loading full markdown...

Your browser does not support inline PDF viewing.

Download the PDF to view it.

Match Rate: 10.00/10 (Relevance to core cybersecurity goals)

LINK COPIED TO CLIPBOARD