Malicious npm Packages Pose as PostCSS Tools to Deliver Windows RAT

Cybersecurity researchers have discovered a set of malicious npm packages that are designed to deliver a Windows-based remote access trojan (RAT).

The list of identified packages, is below –

aes-decode-runner-pro (145 downloads)
postcss-minify-selector (256 downloads)
postcss-minify-selector-parser (615 downloads)

All the packages were published over the past month by an npm user named

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Show HN: What should the GUI for AI agents look like?

Show HN: What should the GUI for AI agents look like? Source: Hacker News

Codex Security

Codex Security Source: Hacker News

China’s open-weights AI strategy is winning

China’s open-weights AI strategy is winning Source: Hacker News