← registry

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer

A threat actor distributed a JavaScript information stealer called PhantomRaven through the npm package registry, likely using an LLM to generate the malware code based on linguistic and structural analysis.

Categorysupply_chain
Severityhigh
AI systemother
Sectorstechnology
Harm typessecurityfinancial
Actorexternal_attacker
Published2026-09-18 09:18:03

Summary is Secursion's own; full text lives at the source. Attribution preserved.