Agents
Trojanized pantheon-agents wheels on PyPI ship a Bun-based credential stealer, GitHub source untouched
GHSA-93qj-5q5v-3c2h (critical, 26 Aug) reports that the PyPI account publishing `pantheon-agents` was compromised in the June 2026 "Hades" PyPI attack (Mini Shai-Hulud / Miasma lineage) and a stolen long-lived API token was used to upload trojanized 0.6.1 and 0.6.2 releases directly. The wheels ship a `*-setup.pth` that runs on Python startup, downloads the Bun runtime, and executes an obfuscated stealer that harvests environment variables, `~/.pypirc`, `~/.npmrc`, `~/.aws`, SSH keys and API tokens. Only the PyPI artifacts are affected; the git repo, its tags and every other channel are clean, so a source install or 0.6.0 is safe.
↳ Follow the thread