Skip to content
archivesupply chain · 21 Aug 2026 · 18:53 UTC

14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

last 60 dispatches · spectrum

Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant dubbed RedC2 4.0. …

grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected