T1567.004 6
- Surveillance Malware Hidden in npm and PyPI Packages Targets Developers with Keyloggers, Webcam Capture, and Credential Theft
- 60 Malicious npm Packages Leak Network and Host Data in Active Malware Campaign
- Skuld Infostealer Returns to npm with Fake Windows Utilities and Malicious Solara Development Packages
- Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
- Roblox Developers Targeted with npm Packages Infected with Skuld Infostealer and Blank Grabber
- Typosquatting on PyPI: Malicious Package Mimics Popular 'browser-cookie3' Library to Steal Sensitive Data