Skip to content
The Nexus
SECURITYJun 12 · 19:24 UTCTHE HACKER NEWS[email protected] (The Hacker News)

400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer

Attackers hijacked over 400 packages in the Arch User Repository (AUR) to install a Rust-based credential stealer that harvests developer secrets. The malware can load an eBPF rootkit to hide itself when executed with root privileges. The AUR is a community-maintained package collection separate from Arch Linux's official repository.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting