DAPSSADAPSSA

Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer

By DAPSSA AI Desk | 2026-08-08T03:50:33.232Z
Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer

Overview

A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware targeting Windows, Mac, and Linux systems. "These packages appear to use AI slop squatted, or randomly generated typo-squatting package names, but all of them deliver a powerful RAT and infostealer payload," OpenSourceMalware researcher Paul

Key Developments

This reflects an evolving cybersecurity situation.

Technical Details

Attackers may use automation and vulnerabilities.

Impact & Risks

Potential disruption and data exposure.

Conclusion

Organizations must stay vigilant.

Read more: https://thehackernews.com/2026/08/nearly-800-malicious-npm-packages.html

Join the Discussion