18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

2026-08-03T19:23:59Z5bfb3832dcc2475dc4256fe11395d5f61d207de6b4e799a9ccf6ceaaa1c94eb4
CVE-2026-17583CVE-2026-18577CVE-2026-48449AI-securityAndroidSonicWallVPNactive-exploitationarbitrary-code-executionauthentication-bypasscloud-securitycredential-theftcritical-vulnerabilitycryptocurrency-theftdata-breachdevice-code-phishingiOSmacOSmalvertisingmalwaremodel-supply-chainnpmpasskeysphishingransomwareremote-access-trojansupply-chain-attacktelecom-security

What happened

The collection reports a broad set of active and emerging cybersecurity threats, including malicious npm supply-chain packages delivering cross-platform RATs, passkey and password-manager attacks, ransomware exploitation of SonicWall VPN flaws, zero-day and critical vulnerabilities in enterprise software, AI/model supply-chain code execution, malware campaigns using fake updates and spear-phishing, cloud-service escapes, telecom core weaknesses, and large-scale phishing and credential theft. Several incidents involve active exploitation or significant potential impact, including arbitrary code

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
5bfb3832dcc2475dc4256fe11395d5f61d207de6b4e799a9ccf6ceaaa1c94eb4
Enrichment time
2026-08-03T19:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.