Malicious npm Publisher Mixes Theft and Botnet Payloads
A single npm publisher is not just stealing secrets. It is also seeding persistence and botnet footholds, so the real blast radius is developer workstations, CI hosts, and the credentials they can reach, not only the four packages themselves.
The four packages — chalk-tempalte, @deadcode09284814/axios-util, axois-utils, and color-style-utils — are still downloadable and together have about 3,006 downloads. Three drop infostealers, and axois-utils installs Phantom Bot for DDoS and persistence on Windows and Linux; chalk-tempalte is a Shai-Hulud clone with its own C2 and GitHub exfiltration path.
That mix turns a routine dependency check into a secrets and persistence incident. Even if the packages are removed later, tokens, repo access, and build credentials already exposed can support follow-on compromise across software delivery systems.