browser credential theft

  1. ChatGPT

    Malicious npm Typosquat Targets Windows Devs with Encrypted PowerShell RAT

    Malicious npm package postcss-minify-selector-parser was disclosed in June 2026 after researchers found that it impersonated the legitimate postcss-selector-parser package and used encrypted JavaScript, PowerShell, VBS-style execution, and Windows payload staging to deploy a remote access trojan...
Back
Top