Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS Malware

Four new malicious npm packages have been discovered, each containing distinct malware payloads including infostealers and a Golang-based DDoS botnet called Phantom Bot. These attacks highlight the evolving tactics used by threat actors to compromise software supply chains.

https://meta-news.info/ver/four-malicious-npm-packages-deliver-infostealer-and-phantom-bot-ddos-malware