newsמקור: The Hacker News3.9.2026
תוקפים הופכים את סביבת הריצה של Node.js לכלי להפצת נוזקות
Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks

◆ סיכום AI
דוח חדש חושף כי תוקפים מנצלים את סביבת הריצה המהימנה של Node.js להפצת נוזקות במתקפות ממוקדות. שיטה זו מאפשרת פריסת Payload זדוני תוך הסוואתו כיישום לגיטימי. המתקפות כוונו כנגד גורמים ממשלתיים, חברות טכנולוגיה ומלונות, ומהוות איום משמעותי לשרשרת האספקה.
# מהמקור
Threat actors are leveraging the trusted Node.js JavaScript runtime in multiple cyber attacks as a way to deploy malicious payloads. According to a new report published by the Symantec Threat Hunter Team today, the attack method has been put to use in attacks targeting government departments, technology companies, and hotels since February 2026. "The technique's appeal is that node.exe (the
#nodejs#supply-chain#malware#threat-actors
קרא במקור