WhisperX tag archive

#typosquatting

This page collects WhisperX intelligence signals tagged #typosquatting. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (3)

The Lab · 2026-05-13 13:18:37 · Mastodon:mastodon.social:#cybersecurity

1. Typosquatting npm Packages Exploit Claude Code SessionStart Hooks to Deploy Persistent Developer Backdoors

A newly identified supply chain attack is targeting software developers through typosquatting npm packages that weaponize Claude Code's SessionStart hooks to establish persistent backdoors on infected systems. The campaign delivers a statically linked, UPX-compressed ELF binary that activates during package installatio...

The Lab · 2026-05-14 13:18:31 · Mastodon:mastodon.social:#cybersecurity

2. Sukob Threat Actor Deploys Rust Malware via npm Typosquatting to Hijack Developer Credentials and CI/CD Pipelines

A sophisticated npm supply chain attack has surfaced, exploiting typosquatting techniques to distribute a Rust-based malware payload designed to harvest developer credentials and establish persistent footholds across software ecosystems. The campaign, attributed to the Sukob threat actor, leverages a malicious package ...

The Lab · 2026-05-15 08:48:19 · r/netsec

3. Vercel Typosquatting Campaign Targets macOS Developers with Obfuscated Malware Loader

Security researchers have uncovered a typosquatting campaign that impersonates Vercel, the popular web development platform, to distribute an obfuscated malware loader targeting macOS systems. The attack chain leverages the trusted reputation of Vercel to trick developers into downloading malicious packages, marking an...