Post #4507951
2026-08-10 12:35 UTC
Close to 800 malicious npm packages ship a cross-platform stealer that runs on import, not at install.
Blocked web C2 falls back to DNS.
Pulled a new npm dependency this week? Hunt host and DNS logs.
https://suriq.io/blog/malicious-npm-packages-dns-c2-stealer
#SupplyChain #infosec #cybersecurity
Replies (0)
No replies.