National Cyber Warfare Foundation (NCWF)

Threat Actors Exploit Discord Webhooks for C2 via npm, PyPI, and Ruby Packages


0 user ratings
2025-10-12 15:51:29
milo
Red Team (CNA)

Threat actors are increasingly abusing Discord webhooks as covert command-and-control (C2) channels inside open-source packages, enabling stealthy exfiltration of secrets, host telemetry, and developer environment data without standing up bespoke infrastructure. Socket’s Threat Research Team has documented active abuse across npm, PyPI, and RubyGems, where hard-coded Discord webhook URLs act as write-only sinks to siphon […]


The post Threat Actors Exploit Discord Webhooks for C2 via npm, PyPI, and Ruby Packages appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Kaaviya

Source: gbHackers
Source Link: https://gbhackers.com/threat-actors-exploit-discord-webhooks-for-c2/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.