lazarusholic
Everyday is lazarus.day
β
Actors
Reports
Incidents
Search
⛾
SafeDep
https://safedep.io
Reports
2026-06-17
SafeDep
Mastra npm Scope Takeover: 143 Packages Drop a RAT
#Mastra
#NPM
2026-06-11
SafeDep
astro.config.mjs Supply Chain Attack via Blockchain C2
#PolinRider
2026-05-28
SafeDep
Inside MicrosoftSystem64: A Supply Chain RAT Exfiltrating to HuggingFace
#FamousChollima
#HuggingFace
#NPM
2026-04-02
SafeDep
Malicious npm Package express-session-js Drops Full RAT Payload
#ContagiousInterview
#NPM
2026-03-31
SafeDep
axios Compromised: npm Supply Chain Attack via Dependency Injection
#Axios
#NPM