18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
2026-08-03T19:23:59Z•5bfb3832dcc2475dc4256fe11395d5f61d207de6b4e799a9ccf6ceaaa1c94eb4
CVE-2026-17583CVE-2026-18577CVE-2026-48449AI-securityAndroidSonicWallVPNactive-exploitationarbitrary-code-executionauthentication-bypasscloud-securitycredential-theftcritical-vulnerabilitycryptocurrency-theftdata-breachdevice-code-phishingiOSmacOSmalvertisingmalwaremodel-supply-chainnpmpasskeysphishingransomwareremote-access-trojansupply-chain-attacktelecom-security
What happened
The collection reports a broad set of active and emerging cybersecurity threats, including malicious npm supply-chain packages delivering cross-platform RATs, passkey and password-manager attacks, ransomware exploitation of SonicWall VPN flaws, zero-day and critical vulnerabilities in enterprise software, AI/model supply-chain code execution, malware campaigns using fake updates and spear-phishing, cloud-service escapes, telecom core weaknesses, and large-scale phishing and credential theft. Several incidents involve active exploitation or significant potential impact, including arbitrary code
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 5bfb3832dcc2475dc4256fe11395d5f61d207de6b4e799a9ccf6ceaaa1c94eb4
- Enrichment time
- 2026-08-03T19:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.