Skip to content
The Nexus
SECURITYAug 3 · 18:43 UTCTHE HACKER NEWS[email protected] (The Hacker News)

18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

Cybersecurity researchers identified 18 malicious npm packages targeting Alibaba developer tool users with a cross-platform remote access trojan (RAT) as part of a supply chain attack focused on Chinese-speaking environments. One package, 'lib-mtop,' mimics a private Alibaba package to deliver the malware.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting