Hijacked npm Packages Deliver Malware via Solana, Linked to Glassworm

Sonatype Security Research has identified two hijacked npm packages in the React Native ecosystem that receive more than 30,000 downloads collectively per week and were modified to deliver multi-stage malware. Sonatype is tracking the malicious packages as sonatype-2026-001153.

The post Hijacked npm Packages Deliver Malware via Solana, Linked to Glassworm appeared first on Security Boulevard.

This article has been indexed from Security Boulevard

Read the original article: