Over 15 Malicious npm Packages Delivering Vidar Malware on Windows Systems
Article Content
Browse articles
More than 15 weaponized npm packages have been identified that exploit Windows systems to deploy Vidar malware. These malicious packages target users by masquerading as legitimate software, potentially compromising sensitive data. The ongoing threat affects a wide range of Windows users and organizations relying on npm for package management.
Ask AI about this cluster
Answers cite the sources they use
Updated 213d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Vidar in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
2CLoader Malware Loader Distributes Vidar and Remus Infostealers Zscaler ThreatLabz has identified a new malware loader named 2CLoader, which is used to deliver infostealers Vidar and Remus, as well as XWorm RAT. The loader employs advanced evasion techniques to bypass security measures, including indirect system calls and anti-debugging checks. Organizations are advised to enhance…
Warden Stealer Malware Targets AI Agents for Data Theft Warden Stealer, a sophisticated malware-as-a-service, is actively targeting AI agents like Claude, Codex, Grok, and Cursor to steal sensitive developer data. This Rust-based infostealer collects configuration files, tokens, and conversation histories, posing a significant threat to organizations using AI tools. The…