As cited
Citation snapshot as of .
threat intel
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
Researchers identified 14 trojanized npm packages disguised as calendar and streak utilities that deploy RedC2 4.0, an AI-powered Linux backdoor. The malicious packages execute a bundled binary as a background process upon module load, establishing unauthorized system access.
Why it matters: Developers using these packages from npm repositories face direct compromise of their build environments and production systems; audit your dependencies immediately for these trojanized packages and implement strict software supply chain controls.
- Source published
- First seen by Cybersecurity Tracker