Malicious Packagist Laravel packages install a cross-platform RAT enabling remote shell access and system reconnaissance via C2 server.
© 2026 Forbes Media LLC. All Rights Reserved.
New attack waves from the 'PhantomRaven' supply-chain campaign are hitting the npm registry, with dozens of malicious packages that exfiltrate sensitive data from JavaScript developers.
The U.S. Embassy building in Awkar, east of Beirut, is seen on June 23, 2025. The U.S. has ordered nonessential personnel to evacuate the embassy amid America's military buildup in the Middle East.