National Cyber Warfare Foundation (NCWF)

Malicious npm Packages Pose as PostCSS Tools to Deliver Windows RAT


0 user ratings
2026-06-23 09:32:06
milo
Blue Team (CND)
Cybersecurity researchers have discovered a set of malicious npm packages that are designed to deliver a Windows-based remote access trojan (RAT).

The list of identified packages, is below -


aes-decode-runner-pro (145 downloads)
postcss-minify-selector (256 downloads)
postcss-minify-selector-parser (615 downloads)

All the packages were published over the past month by an npm user named



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/06/malicious-npm-packages-pose-as-postcss.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.