14:12
2026-09-23
byteiota.com
ai-safety
GHAPPIER: npm’s Signed Packages Just Delivered a Backdoor
CloudSEK disclosed on September 20 that a malware loader called GHAPPIER was distributed through the npm package @dforge-core/dforge-mcp after an attacker spent 105 minutes in the maintainer's account…