Cybersecurity SINGLE SOURCE
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
First reported Source: The Hacker NewsLast editorial activity
What happened
Cybersecurity researchers have disclosed details of a long-running npm supply chain malware (software written to damage a system or steal from it) campaign that pushes information stealers and remote access trojans (RAT) to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx.
Sources & evidence
- The Hacker News Reporting source
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer ↗
https://thehackernews.com/2026/10/eight-malicious-npm-packages-downloaded.html