Blogs

Distributed npm Package Cluster Delivers Cross-Platform RAT Targeting Alibaba Developers

Socket

Benign-looking npm packages split malicious functionality across a dependency chain that deploys a cross-platform RAT targeting Alibaba developers.

Visit Site

Blogs Socket

BlogsUpdated and Ongoing Supply Chain Attack Targets CrowdStrike npm PackagesSocket BlogsLarge-Scale GitHub Actions Abuse Powers a Distributed cPanel and WHM Exploitation CampaignSocket BlogsHow to Protect Your Projects from the Risks of Deprecated npm PackagesSocket BlogsPopular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain AttackSocket BlogsSupply Chain Attack on Axios Pulls Malicious Dependency from npmSocket BlogsOpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain AttackSocket ResearchDigital Forensics & Emerging Technologies GuideCybersecurity Exchange BlogsDocs-as-code solutions for API teams: how to choose the right platform in 2026Mintlify NewsHow Argo CD and OpenShift Enable GitOps for DevelopersThenewstack NewsGrafana Is Not Worried About AWS CommercializationThenewstack NewsPancakes Are Delicious and Data Centers Are for Free StuffThenewstack NewsIntegrate Jupyter Notebooks with GitHubThenewstack NewsTransform and Future-Proof Your Architecture with MACHThenewstack NewsSecurity Considerations for API-Driven Apps Deployed to CloudThenewstack NewsSelecting the Right Database for Your MicroservicesThenewstack BlogsPlatform Engineering & DevOps Series Kickoff AnnouncementPulumi BlogsNew Policy as Code Capabilities with CrossGuardPulumi BlogsGo.dev: a new hub for Go developers - The Go Programming LanguageGo ResourcesManaging dependencies - The Go Programming LanguageGo BlogsGo Concurrency Patterns: Context - The Go Programming LanguageGo