New Shai-Hulud attack trojanizes 19 science-focused PyPI packages
…A second exfiltration method based on direct HTTPS also exists, pointing to a legitimate but invalid Anthropic API endpoint (api[.]anthropic[.]com/v1/api), which Socket believes was likely used for camouflage…
