A sophisticated supply chain attack on the npm package ‘rand-user-agent’ was discovered on May 5, 2025, inserting a Remote Access Trojan (RAT) named “RATatouille.” It affects around 45,000 weekly downloads, compromising user systems by establishing covert communication with malicious servers. Users of versions post-October 2024 are urged to check for indicators of compromise and unauthorized changes.

“PupkinStealer” A New .NET-Based Malware Steals Browser Credentials & Exfiltrate via Telegram
PupkinStealer is a C# malware that steals sensitive data, including browser credentials and desktop files, using Telegram for stealthy data exfiltration. Discovered in April 2025,