RATatouille: A Malicious Recipe Hidden in rand-user-agent (Supply Chain Compromise)
aikido.dev | blog | #supply-chain | #malware | #npm | #c2 | #supply-chain-attack | #file-exfiltration | #rat | #rand-user-agent | #npm-malware | #socket-io | #path-hijack
Summary
A supply chain attack hit the rand-user-agent npm package: hidden code deployed a RAT with socket.io C2 channels, file exfiltration, and a Python PATH hijack across versions released after 2.0.82.
- Published
- Collected
Skip to content