Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

A malicious npm package named “indexed-btree” has been observed hiding its malicious behavior within application code rather than using lifecycle scripts, indicating that threat actors are likely shifting tactics in response to recent security controls.

“Indexed-btree is a malicious npm package mimicking the legit sorted-btree package, an ordinary B-tree/indexing utility,” Checkmarx said. “

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake Traffic

152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake Traffic Cybersecurity researchers have discovered a network of 152 Google Chrome extensions that act as new tab live

Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users’ Reservations in Tests

Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users’ Reservations in Tests Aikido Security has published research that recreates the Australian gym-booking incident in a synthetic environment, finding that

Attack Update: Top 5 Attack-IPs auf doode.info – 27.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 608 requests (recent log) 34.31.203.120 — 466 requests (recent log) 146.70.194.222 — 222 requests (recent