Malicious Packages Disguised as Laravel Utilities Deploy PHP RAT and Enables Remote Access

A supply chain attack targeting the PHP developer community has surfaced through Packagist, the official package repository for PHP and Laravel projects. Threat actor nhattuanbl published several packages that disguised a fully functional remote access trojan (RAT) inside what looked like standard Laravel utility libraries, giving attackers silent and persistent control over any system that installed them. […]

The post Malicious Packages Disguised as Laravel Utilities Deploy PHP RAT and Enables Remote Access appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: