National Cyber Warfare Foundation (NCWF)

Malicious npm Package Stole Files From Claude AI User Directory via GitHub


0 user ratings
2026-05-27 16:33:09
milo
Blue Team (CND)
Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities.

According to OX Security, the package, named "mouse5212-super-formatter," is designed to upload files from "/mnt/user-data," a dedicated directory used by Anthropic's Claude artificial intelligence (AI) tool to handle uploads and outputs in the background. The



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/05/malicious-npm-package-stole-files-from.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.