Skills
Malicious npm 'mouse5212-super-formatter' Exfiltrates Claude AI User Directory — AI-Generated Malware Leaks Its Own GitHub Token
OX Security discovered a malicious npm package targeting /mnt/user-data, the directory Anthropic's Claude uses for uploads and outputs. The package recursively uploads every file to an attacker-controlled GitHub repo via the Contents API. In a twist, the AI-generated malware leaked its own private GitHub token, enabling full attribution. 676 downloads before detection; ~7 active exfiltration attempts observed. Codenamed 'Malware-Slop' — signals that low-skill attackers are using AI to generate supply-chain malware.
↳ Follow the thread