Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer
2026-08-08T07:23:58Z•84209151efd261502bd5c2def94e907c89683d20524f8e5f79a496b3d8554525
CVE-2026-63077CVE-2026-64561CVE-2026-64638AI-agent-securityAiTMCisco-IOS-XEHTTP-desyncKVMLinux-kernelPLC-exposureRATWordPressactive-exploitationcloud-securitycontainer-escapecryptocurrency-theftidentity-compromiseindustrial-control-systemsinfostealernpm-malwarephishingransomwareremote-code-executionrouter-backdoorsupply-chainvirtualization
What happened
The feed reports a broad set of high-impact cybersecurity developments, including active exploitation of a critical JetBrains TeamCity remote-code-execution flaw, serious Linux kernel and KVM virtualization vulnerabilities, malicious npm supply-chain packages delivering cross-platform RATs and infostealers, cloud identity and SaaS phishing campaigns, exposed industrial control systems, router backdoors, AI-agent security flaws, and cryptocurrency theft. Several issues enable unauthenticated remote code execution, privilege escalation, container or VM escape, credential theft, or financial loss
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 84209151efd261502bd5c2def94e907c89683d20524f8e5f79a496b3d8554525
- Enrichment time
- 2026-08-08T07:23:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.