Get the latest tech news

Fake web3 Job interview deploys stealthy cross platform (macOS/Windows) malware via compromised NPM packages in take home assessment


Deep dive into SStar Agent: a cross-platform RAT with Chrome extension harvesting, full filesystem exfiltration, and Windows-only keylogging delivered via npm supply chain attack.

None

Get the Android app

Or read this on r/technology

Read more on:

Photo of malware

malware

Photo of deploys

deploys

Photo of npm

npm

Related news:

News photo

Dozens of Red Hat packages backdoored through its official NPM channel

News photo

Malicious npm packages detected across Red Hat Cloud Services

News photo

ChatGPT share links abused to host fake outage pages to deliver malware