Skip to main content

Tag: overlord rat

1 article

Software development workspace with laptop, coding books, and blurred npm registry webpage on screen.

Malicious npm Packages Deliver Overlord RAT and Stealer in Supply Chain Attack

A single malicious npm package, "function-flag," was downloaded a staggering 37,419 times in a supply-chain operation that delivered Remote Access Trojans and information stealers to Windows hosts. This was part of a larger campaign, dubbed MALFEX, where 12 packages were published to the npm registry since August 2023, with eight of them flagged as malicious and collectively downloaded over 40,767 times.

Analyst 207