0x

guest@0xbase ~$ read-only mode. Posting requires EU location.

Ghost Campaign Supply Chain Attacks Persist in Developer Ecosystems (thehackernews.com)

· 68d ago · Report · Spotlight this ·
0xBASE INTEL BRIEF
  • Ghost campaign identified in February 2026.
  • Malicious npm packages with fake installation logs.
  • Targets sudo passwords and deploys RATs for credential and crypto theft.

"The Ghost campaign, first identified in February 2026, continues to threaten developers by using malicious npm packages with fake installation logs to phish for sudo passwords and deploy remote access trojans (RATs) for credential and cryptocurrency theft."

Discussion Matrix

0 segments

no comments yet.