HackerFeeds

CyberSecurity News

WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage

The Hacker News
· September 18, 2026

AI summary

Cybersecurity researchers have identified 13 npm packages that are distributing a newly discovered JavaScript stealer called WeaselBiscuit. This malware is designed to harvest Chrome extension storage. WeaselBiscuit shares similarities with two other malware strains, BeaverTail, which are linked to the Contagious Interview campaign attributed to the Democratic People's Republic of Korea. The discovery highlights a new threat to users who may be exposed to the malicious npm packages. The WeaselBiscuit stealer is a previously undocumented malware family. Its functionality overlaps with known malware associated with the DPRK.

Read the full article at The Hacker Newsthehackernews.com/2026/09/weaselbiscuit-stealer-spreads-via-13.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.