> Backdoored node-ipc npm releases steal developer credentials through DNS queries
[DATE: 14/05/2026 00:00]
[LANGUAGE: EN]
An analysis of backdoored node-ipc npm releases that add an obfuscated credential collection and DNS exfiltration payload to the CommonJS entrypoint.