Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer

Cybersecurity researchers have disclosed details of a long-running npm supply chain malware campaign that pushes information stealers and remote access trojans (RAT) to compromised hosts.

The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a lone threat actor who appears to have published 12 packages since August 2023, eight of which have

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point Introduction Security teams have gotten pretty good at testing against what can hurt them. Can this EDR

Initial focus for our partnership with Motorola is a regular non-folding device

Initial focus for our partnership with Motorola is a regular non-folding device Source: Hacker News

Fable ban was never about a jailbreak

Fable ban was never about a jailbreak Source: Hacker News