threat-intel
14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2
High
Summary
A new AI-powered Linux backdoor, RedC2 4.0, is being distributed through malicious npm packages, significantly lowering the barrier to entry for attackers. The framework, developed and sold by Red Offsec, offers advanced post-exploitation capabilities across Windows, Linux, and macOS, including AI-assisted command execution via a large language model (LLM) named Red Agent. This follows a recent supply chain attack targeting Rust crates, highlighting the increasing sophistication of malicious actors leveraging AI to streamline intrusion operations.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
