News

New Malicious npm Package "ambar-src" Targets Developers with Open Source Malware

  • Tenable Research--Tenable.com
  • published date: 2026-02-24 21:30:00 UTC

Tenable Research investigated a malicious npm package with around 50,000 downloads in the public registry. We observed various detection-evasion techniques and saw it deploy multiple powerful open-source malware variants.Key takeaways <ol><li>A single malici…

Tenable Research investigated a malicious npm package with around 50,000 downloads in the public registry. We observed various detection-evasion techniques and saw it deploy multiple powerful open-so… [+11863 chars]