18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
- ID
- 10502
- Status
- summarized
- Published
- 04 Aug 2026, 2:43 AM
- Fetched
- 04 Aug 2026, 3:52 AM
- Provider
- The Hacker News
- Category
- security
- Original URL
- https://thehackernews.com/2026/08/18-malicious-npm-packages-deliver-cross.html
- Source URL
- https://feeds.feedburner.com/TheHackersNews
Excerpt
Cybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments. One of the packages in question is "lib-mtop," an unscoped package with the same name as a private Alibaba package
Summary
No summary yet. It will appear after the daemon summarizes this item.