Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
  • Home
  • Attack Feeds
  • Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News
AttackFeed by Joe Wagner | Malicious npm Package Stole Files From Claude AI User Directory via GitHub  - The Hacker News

Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News
Attack Feeds

Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities.

According to OX Security, the package, named “mouse5212-super-formatter,” is designed to upload files from “/mnt/user-data,” a dedicated directory used by Anthropic’s Claude artificial intelligence (AI) tool to handle uploads and outputs in the background. The  –

Read More  – The Hacker News 

Post navigation

❮ Previous Post: Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users  – The Hacker News
Next Post: Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response – ❯

You may also like

AttackFeed by Joe Wagner | Russian access broker sentenced to over 6 years in prison for ransomware schemes  - CyberScoop
Attack Feeds
Russian access broker sentenced to over 6 years in prison for ransomware schemes  – CyberScoop
March 24, 2026
AttackFeed by Joe Wagner | After Mythos: New Playbooks For a Zero-Window Era  - The Hacker News
Attack Feeds
After Mythos: New Playbooks For a Zero-Window Era  – The Hacker News
April 28, 2026
AttackFeed by Joe Wagner | Salesforce issues new security alert tied to third customer attack spree in six months  - CyberScoop
Attack Feeds
Salesforce issues new security alert tied to third customer attack spree in six months  – CyberScoop
March 11, 2026
AttackFeed by Joe Wagner | SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation  - The Hacker News
Attack Feeds
SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation  – The Hacker News
April 21, 2026

Leave a Reply Cancel reply

You must be logged in to post a comment.

  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.