OpenSourceMalware is tracking StubMaker, a campaign of 16 typosquatted RubyGems packages that drops a Windows infostealer on developers.
Nearly 800 npm packages hide a cross-platform RAT and infostealer behind fake README instructions.
A trojanized Newtonsoft.Json fork on NuGet smuggles game-rigging malware inside a fully functional serialization library to evade detection.
A typosquatted Go package remained dormant for years before activating a DNS based backdoor that persists even after its GitHub…