Skip to content

Instantly share code, notes, and snippets.

View sadraiiali's full-sized avatar
🐼

Alireza Sadraii sadraiiali

🐼
View GitHub Profile
@sadraiiali
sadraiiali / shai-hulud-scanner.js
Created November 28, 2025 18:59
Shai-Hulud 2.0 Vulnerability Scanner: A Node.js script to detect compromised npm packages and malicious file hashes (based on Wiz research).
#!/usr/bin/env node
/*
* ============================================================================
* SHAI-HULUD 2.0 SUPPLY CHAIN ATTACK VULNERABILITY SCANNER
* ============================================================================
*
* ⚠️ NOTICE: This code was AI-generated (vibe coded) and should be used at your own risk. ⚠️
*
* WHAT THIS TOOL DOES (Step-by-Step):

Keybase proof

I hereby claim:

  • I am sadraiiali on github.
  • I am sadraiiali (https://keybase.io/sadraiiali) on keybase.
  • I have a public key ASAxWdg9mbk3Fr0_VpZ9aHrphAMOMSYIQdJwzmsf4BPfQQo

To claim this, I am signing this object: