#9
The Hacker News
general
October 07, 2026 at 17:43 UTC
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
By [email protected] (The Hacker News)
AI Summary
Researchers from CloudSEK and Checkmarx detailed the MALFEX npm supply chain campaign, in which a single threat actor published 12 malicious packages since August 2023, eight of which accumulated 40,767 downloads before detection and delivered the Overlord RAT and an information stealer. The campaign's longevity — spanning over three years — underscores the persistent risk of malicious packages in open-source ecosystems. Developers using npm should audit dependencies for packages published by unknown or single-maintainer accounts.
Relevance score: 72.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →