← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 22, 2026 · 09:38via The Hacker News

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

Brief

A malicious npm package named "indexed-btree" has been observed hiding its malicious behavior within application code rather than using lifecycle scripts, indicating that threat actors are likely shifting tactics in response to recent security controls.

"Indexed-btree is a malicious npm package mimicking the legit sorted-btree package, an ordinary B-tree/indexing utility," Checkmarx said. "

Read more on The Hacker News→