Fake Postmark MCP Server Silently Stole Thousands of Emails With a Single Line of Malicious Code

A malicious npm package masquerading as the official Postmark MCP Server has been exfiltrating user emails to an external server.  This fake “postmark-mcp” module, available on npm from versions 1.0.0 through 1.0.15, built trust over 15 incremental releases before dropping a backdoor in version 1.0.16.  The stealthy payload consisted of a single line of code […]

The post Fake Postmark MCP Server Silently Stole Thousands of Emails With a Single Line of Malicious Code appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: