CYBERSECURITYTRACKER
TRACKING4,463 stories841 vuln stories
Permanent story citation

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4868

As cited

Citation snapshot as of .

threat intel

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

Researchers identified 14 trojanized npm packages disguised as calendar and streak utilities that deploy RedC2 4.0, an AI-powered Linux backdoor. The malicious packages execute a bundled binary as a background process upon module load, establishing unauthorized system access.

Why it matters: Developers using these packages from npm repositories face direct compromise of their build environments and production systems; audit your dependencies immediately for these trojanized packages and implement strict software supply chain controls.

Source published
First seen by Cybersecurity Tracker

Source attribution