VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_5e41b682e284fc8e9c08b0d597fc700d

18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users

Published Aug 3, 2026

Cybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments.

One of the packages in question is "lib-mtop," an unscoped package with the same name as a private Alibaba package

Affected AI Products

tool use
Get the weekly digest. Every Monday: top AI security stories of the week. Free.