Home / Oct 08, 2026 / Story
0
#9 The Hacker News general October 07, 2026 at 17:43 UTC

Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer

By [email protected] (The Hacker News)

AI Summary

Researchers from CloudSEK and Checkmarx detailed the MALFEX npm supply chain campaign, in which a single threat actor published 12 malicious packages since August 2023, eight of which accumulated 40,767 downloads before detection and delivered the Overlord RAT and an information stealer. The campaign's longevity — spanning over three years — underscores the persistent risk of malicious packages in open-source ecosystems. Developers using npm should audit dependencies for packages published by unknown or single-maintainer accounts.

Relevance score: 72.0/100

# More from October 08