Skip to content

Maloss

Tool

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
November 15, 2025
Last Seen
November 15, 2025
API

Maloss is described as a worm-like malware tool that floods the npm registry with packages containing token-stealing payloads, enabling attackers to harvest credentials from developers and automation accounts when those packages are installed.

Overview

Recent Events

Associated Malware

Platforms

Relationships

The full threat graph for this incident is free in the 7-day Starter trial.

Create free account

No card · 30 seconds

See everything included