18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

Cybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments.

One of the packages in question is “lib-mtop,” an unscoped package with the same name as a private Alibaba package

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Longest Straight Line Paths on Water or Land on the Earth (2018)

Longest Straight Line Paths on Water or Land on the Earth (2018) Source: Hacker News

Show HN: I missed the moving blocks, so I built a real Linux disk defragmenter

Show HN: I missed the moving blocks, so I built a real Linux disk defragmenter Source: Hacker News

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing Read on The Hacker News Source: The Hacker News