Hackers Turn Trusted Node.js Runtime Into Malware Launcher in Ransomware-Linked Attacks

Cybercriminals are increasingly hijacking Node.js, the widely used JavaScript runtime, to slip malicious code past security defenses, according to new findings from the Symantec Threat Hunter Team. Since February 2026, multiple threat actors have abused the legitimate, digitally signed tool to execute malware while evading detection, with victims spanning government departments, technology firms, and hotels […]

This article has been indexed from Cyber Security News

Read the original article: