Trojanized npm Packages Deliver AI Powered RedC2 4.0 Linux Backdoor
Cybersecurity researchers discovered 14 npm packages hiding RedC2 4.0 Linux backdoor with AI assisted C2 capabilities, enabling post exploitation activities.
Cybersecurity researchers discovered 14 npm packages hiding RedC2 4.0 Linux backdoor with AI assisted C2 capabilities, enabling post exploitation activities.
Security researchers have uncovered malicious npm packages posing as PostCSS tools that deploy a Windows remote access trojan, highlighting ongoing software supply chain threats targeting developers and open source ecosystems.
Microsoft adds a two hour delay for automatic VS Code extension updates to reduce supply chain attacks while allowing immediate updates for trusted publishers.