We put Stream’s detection and investigation capabilities to the test using a scenario modeled after the recent Shai-Hulud 2.0 supply-chain attack. 🪱
1
53
Our Security Research Team detonated an infected npm package inside a K8s pod to see how Stream handles fast, multi-stage behavior end to end.
1
10
Here's what we learned:
1) Stream's CDR built-in anomaly detection engine perfectly caught this unknown threat 🤑
2) How Stream correlates credential harvesting, exfil attempts, fileless techniques, and cross-service behaviors in real time. 💥
1
7
Here's the deep dive into how we investigated the Shai-Hulud 2.0-style attack we created: stream.security/post/the-sha…
Nov 30, 2025 · 2:48 PM UTC
92

