DLL injection dependency
scripts/hook-fileexecution/windows-loader
What we caught this week while monitoring over 163,363,865 artifacts across 47 ecosystems. Campaigns that impact multiple packages are collapsed into a single entry with their siblings.
DLL injection dependency
Obfuscated Lua payload in wiki
Obfuscated Lua payload in Go module
Obfuscated Lua payload, nested archives, masquerading LuaJIT dropper
C2 framework with obfuscated Lua payloads
malicious htmlescape dependency
C2 URL in package definition
NPM install hook credential stealer
C2 beacon and reverse shell generator
Test file contains webshell payload
emp3r0r C2 framework with RAT, BOF, and evasion
malicious dependency htmlescape