PostCSS is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
PostCSS is a technology platform tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed June 23, 2026; most recent activity June 23, 2026.
A malicious npm package named postcss-minify-selector-parser has been discovered, masquerading as a legitimate PostCSS utility. This package is delivering a multi-stage Windows remote access trojan (RAT). It mimics the…
PostCSS is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
The most recent intelligence report mentioning PostCSS on ThreatCluster is dated June 23, 2026.
Across ThreatCluster reporting, PostCSS most frequently co-occurs with Malware, T1036 - Masquerading, T1195 - Supply Chain Compromise, Windows, Npm.
The most significant recent cluster is “Malicious npm Packages Deliver Windows RAT via PostCSS Impersonation” (4 articles · Updated June 23, 2026). PostCSS appears across 1 threat cluster in total, listed above with sources.
PostCSS appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.