TI Mindmap HUB
Threat Intelligence Report

Five npm Packages That Hide a Windows Binary Dropper

๐Ÿ“… June 17, 2026 ๐Ÿ“ฐ safedep.io ๐Ÿ” 0 CVE(s) referenced

A coordinated npm supply chain attack used five interlinked packages to stealthily deliver and execute arbitrary Windows binaries during installation, evading static detection by splitting malicious logic and disguising payload delivery through obfuscated code and public file hosting.

vendor

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

๐Ÿ” Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

๐Ÿ“Š Visual Mindmap
๐ŸŽฏ IOC Extraction
โš”๏ธ MITRE ATT&CK TTPs
๐Ÿ“ฆ STIX 2.1 Bundle