Popular HTTP library Axios compromised with RAT malware on NPM

Popular HTTP library Axios compromised with RAT malware on NPM

Hacker News·1mo·mtud

Malicious versions of Axios were published to NPM, delivering a remote access trojan to downstream users. This is a stark reminder that even widely-used dependencies can become attack vectors—indie makers relying on npm packages should audit their lockfiles and consider pinning versions to avoid surprise installations.

Related stories