• Alerts
  • Events
  • DCR
    • Explore Cyware Products
    Alerts Events DCR
    Go to listing page

    Supply chain attack hits npm package with 45,000 weekly downloads

    • Malware and Vulnerabilities
    • May 09, 2025
    • Bleeping Computer
    A supply chain attack has compromised the npm package rand-user-agent, which averaged 45,000 weekly downloads. Although deprecated, the package remained popular, making it an attractive target for attackers.
    Read More
    • Rand-User-Agent
    • NPM Package
    • Remote Access Trojan
    • Supply Chain Attack
    • Obfuscated Code
    Cyware Publisher

    Publisher

    Previous

    Kickidler employee monitoring software abused in ransom ...

    Threat Intel & Info Sharing

    Next

    VC giant Insight Partners confirms investor data stolen ...

    Breaches and Incidents


    RESOURCES
    Cyber Fusion Center Guide
    EVENTS

    News and Updates, Hacker News

    Get in touch with us now!

    1-855-692-9927


    Download Cyware Social App

    Terms of Use Privacy Policy © 2023