Thumper is an open-source tripwire for the Shai-Hulud npm worm. Plant fake-but-realistic credentials where the worm scans - the instant one is read, you know the box might be breached. Free and built in the open by Jesta.
jestasecurity/thumper is carrying a momentum pulse of 0/100 with no cross-source channels firing yet — GitHub-stars-only signal so far.
It sits at 33 stars without a fresh weekly delta on record — the trending placement here is steady-state interest in the AI agent / LLM tooling stack rather than a 7-day breakout.
Watch-outs: no tagged release on record (treat as pre-stable).
git clone https://github.com/jestasecurity/thumper.gitThen follow the README in the cloned directory.
//COMMENTS · 0
Sign in to join the discussion