IncidentRAT in the Registry: npm Supply Chain Attack Targets Alibaba Developers
What Happened Between November 2023 and early 2025, attackers published 18 malicious npm packages targeting developers using Alibaba Group s internal tools. These packages had names like lib-mtop , mi














