Axios npm Supply Chain Attack: Cross-Platform RAT Delivery via Compromised Maintainer Credentials

Introduction to Malware Binary Triage (IMBT) Course

Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.

Enroll Now and Save 10%: Coupon Code MWNEWS10

Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.

Axios npm Supply Chain Attack: Cross-Platform RAT Delivery via Compromised Maintainer Credentials

On March 31, 2026, automated malware detection systems flagged a live supply chain compromise targeting Axios, the JavaScript ecosystem's most widely adopted HTTP client library with approximately 83 million weekly downloads on npm. The attack injected a cross-platform remote access trojan (RAT) dropper through a malicious transitive dependency, plain-crypto-js@4.2.1, into two newly published Axios versions.

Article Link: Axios npm Supply Chain Attack: Cross-Platform RAT Delivery via Compromised Maintainer Credentials

1 post - 1 participant

Read full topic



Malware Analysis, News and Indicators - Latest topics
Next Post Previous Post