<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>malware Stories - newscri</title>
	<atom:link href="https://newscricket.org/tag/malware/feed/" rel="self" type="application/rss+xml" />
	<link></link>
	<description>Latest Cricket News, Match Updates and Statistics</description>
	<lastBuildDate>Tue, 31 Mar 2026 09:54:30 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://newscricket.org/wp-content/uploads/2026/02/Gemini_Generated_Image_uac0tduac0tduac0-100x100.webp</url>
	<title>malware Stories - newscri</title>
	<link></link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Axios: Malicious Versions of  Published on npm</title>
		<link>https://newscricket.org/2026/03/31/axios-malicious-versions-of-published-on-npm/</link>
		
		<dc:creator><![CDATA[newsroom]]></dc:creator>
		<pubDate>Tue, 31 Mar 2026 09:54:30 +0000</pubDate>
				<category><![CDATA[Business]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[axios]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[JavaScript]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[npm]]></category>
		<category><![CDATA[Remote Access Trojan]]></category>
		<category><![CDATA[software development]]></category>
		<category><![CDATA[software supply chain]]></category>
		<category><![CDATA[StepSecurity]]></category>
		<guid isPermaLink="false">https://newscricket.org/2026/03/31/axios-malicious-versions-of-published-on-npm/</guid>

					<description><![CDATA[<p>Two malicious versions of the popular JavaScript library axios were published on npm, leading to significant security concerns.</p>
<p>The post <a href="https://newscricket.org/2026/03/31/axios-malicious-versions-of-published-on-npm/">Axios: Malicious Versions of  Published on npm</a> appeared first on <a href="https://newscricket.org">newscri</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>In a significant security breach, two malicious versions of the widely used JavaScript library <strong>axios</strong> were published on the npm platform on March 31, 2026. The versions, identified as v1.14.1 and v0.30.4, were live for approximately 2 hours and 53 minutes and 2 hours and 15 minutes, respectively, before being removed shortly after their discovery.</p>
<p>The attack was executed using the compromised credentials of a lead maintainer of axios, allowing the assailant to inject a malicious package named <strong>plain-crypto-js@4.2.1</strong> as a dependency. This malicious package was designed to evade detection by masquerading as a legitimate component, thereby increasing its potential impact.</p>
<p>Prior to the publication of the malicious versions, the attack was pre-staged over an 18-hour period, indicating a high level of planning and sophistication. The malicious versions of axios were downloaded extensively, given that axios boasts over 100 million weekly downloads and is utilized in approximately 80% of cloud and code environments.</p>
<h2>Key moments</h2>
<p>The attack involved a cross-platform Remote Access Trojan (RAT) that targeted macOS, Windows, and Linux systems. Once installed, the RAT dropper executed a postinstall script that contacted a command-and-control server, potentially compromising the security of affected systems. Observations indicated that execution of the malicious code occurred in 3% of the environments where the malicious versions were deployed.</p>
<p>Security experts from StepSecurity detected the attack using their AI Package Analyst and Harden-Runner tools, which are employed in over 12,000 public repositories. The detection was facilitated by an anomalous connection that had not appeared in any prior workflow run, highlighting the effectiveness of these security measures.</p>
<p>In response to the incident, organizations are being strongly advised to audit their environments for any potential execution of the compromised versions of axios. Security professionals have noted that there are zero lines of malicious code within the axios library itself, emphasizing that the attack&#8217;s danger lies in the external dependencies introduced by the malicious versions.</p>
<p>This incident is being described as one of the most operationally sophisticated supply chain attacks ever documented against a top-10 npm package. As the software development community continues to grapple with the implications of this breach, the focus remains on enhancing security measures to prevent similar incidents in the future.</p>
<p>The post <a href="https://newscricket.org/2026/03/31/axios-malicious-versions-of-published-on-npm/">Axios: Malicious Versions of  Published on npm</a> appeared first on <a href="https://newscricket.org">newscri</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
