Malicious NPM Packages Disguised As PostCSS Tools Deliver Windows RAT To Developers
Security researchers have uncovered malicious npm packages posing as PostCSS tools that deploy a Windows remote access trojan, highlighting ongoing software supply chain threats targeting developers and open source ecosystems.