India’s cyber security agency CERT-In has warned startups and IT firms about the dangerous ‘Shai-Hulud’ malware targeting JavaScript’s npm ecosystem. This malware can leak user data from apps, websites, and digital services. Over 500 npm packages are already affected. CERT-In advises credential rotation, phishing-resistant MFA, and immediate firewall.