πŸ” Search
Sign in to post
WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storagehttps://thehackernews.com/2026/09/weaselbiscuit-stealer-spreads-via-13.html

Cybersecurity researchers have discovered a cluster of 13 npm packages that have been found to deliver a previously undocumented JavaScript stealer codenamed WeaselBiscuit. The new malware family, per OpenSourceMalware, exhibits functional overlaps with two malware strains associated with the Democratic People's Republic of Korea's (DPRK) Contagious Interview campaign: BeaverTail and

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealerhttps://thehackernews.com/2026/09/claimed-bug-bounty-hunter-likely-used.html

A financially motivated threat actor has been linked to the development and distribution of a JavaScript (JS)-based information stealer known as PhantomRaven via the npm package registry. "The developer likely wrote the malware using a large language model (LLM), an assessment made with high confidence based on verbose comments, placeholder code, and statistical token-analysis patterns,"

0trust.social media

Loading your media...

Pick a GIF β€” Giphy

Loading GIFs...