Crypto Ticker:
sysadmin from 4sysops.com

Nearly 800 malicious npm packages hide RAT behind a simple require()

IT News
Aug 7, 2026 at 20:08
13 Views
0 Comments
Nearly 800 malicious npm packages hide RAT behind a simple require()

Nearly 800 malicious npm packages are using README instructions—not npm lifecycle scripts—to launch a cross-platform RAT and infostealer when developers import them with `require()`. The campaign targets Windows, macOS, and Linux, with payload delivery backed by Cloudflare Workers and DNS TXT records. Source

Read the full article at the source.

Join the discussion — comment, vote, and submit links.

Register
Was this helpful?
Share:

Comments (0)

Please login or register to join the discussion

No comments yet. Be the first to comment!