Cybersecurity researchers have disclosed details of a longrunning npm supply chain malware campaign that pushes information stealers and remote access trojans RAT to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a lone threat actor who appears to have published 12 packages since August 2023, eight of which have.📖 Read more.
🔗 Via "The Hacker News"
----------
👁️ Seen on @cibsecurity