HackerFeeds

CyberSecurity News

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

The Hacker News
· September 22, 2026

AI summary

A malicious npm package called indexed-btree was found to conceal its malicious behavior within application code. This approach differs from typical methods that utilize lifecycle scripts. The package is a fake version of the legitimate sorted-btree package, which is a B-tree and indexing utility. Threat actors may be adopting this tactic in response to newly implemented security controls. The malicious package has since been removed. Indexed-btree was designed to mimic the legitimate package, making it potentially difficult to distinguish between the two.

Read the full article at The Hacker Newsthehackernews.com/2026/09/malicious-npm-package-indexed-btree-hid.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.