# Seven Malicious npm Packages Use Blockchain C2 to Deliver a Remote Access Trojan

Researchers discovered seven malicious npm packages that employ blockchain-based command-and-control (C2) infrastructure to deliver a Remote Access Trojan (RAT). This novel technique enables attackers to evade traditional detection methods and poses a significant threat to the software supply chain. Developers and organizations using npm should review their dependencies and take immediate action to mitigate risk.

**Importance:** 4/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/07/seven-malicious-vite-npm-packages-use.html) — Sat, 18 Jul 2026 00:24:51 +0530
- [The Hacker News](https://thehackernews.com/2026/07/sleepergem-uses-three-malicious.html) — Mon, 20 Jul 2026 10:45:39 +0530