Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer

Read full story on The Hacker News
Share
Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer
AI disclosure

Summary

A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware targeting Windows, Mac, and Linux systems. "These packages appear to use AI slop squatted, or randomly generated typo-squatting package names, but all of them deliver a powerful RAT and infostealer payload," OpenSourceMalware researcher Paul

Original reporting

Open original source

Related coverage

Read full article on The Hacker News

Get the AFBytes Brief

Major stories, AI-assisted analysis, and what to watch next. Free, monthly, unsubscribe anytime.