Zscaler ThreatLabz identifies three malicious NPM packages mimicking Bitcoin libraries. The NodeCordRAT virus uses Discord commands to exfiltrate MetaMask data and Chrome passwords.
First seen on hackread.com
Jump to article: hackread.com/discord-nodecordrat-steal-chrome-data-npm-packages/
![]()

