Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT

Cybersecurity researchers have discovered a cluster of seven malicious npm packages targeting the Vite frontend tooling ecosystem as part of a software supply chain attack.

The malicious package campaign, codenamed ViteVenom by Checkmarx, marks an expansion of ChainVeil, which was observed using an “unprecedented” four-tier blockchain-based command-and-control (C2) infrastructure spanning Tron,

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Snails’ teeth beats spider silk as nature’s strongest material (2015)

Snails’ teeth beats spider silk as nature’s strongest material (2015) Source: Hacker News

Show HN: Jacquard, a programming language for AI-written, human-reviewed code

Show HN: Jacquard, a programming language for AI-written, human-reviewed code Source: Hacker News

GhostLock, a stack-UAF that has existed in all Linux distributions for 15 years

GhostLock, a stack-UAF that has existed in all Linux distributions for 15 years Source: Hacker News