URL has been copied successfully!
Malicious npm Package Uses Hidden Prompt and Script to Evade AI Security Tools
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

Malicious npm Package Uses Hidden Prompt and Script to Evade AI Security Tools

Cybersecurity researchers have disclosed details of an npm package that attempts to influence artificial intelligence (AI)-driven security scanners.The package in question is eslint-plugin-unicorn-ts-2, which masquerades as a TypeScript extension of the popular ESLint plugin. It was uploaded to the registry by a user named “hamburgerisland” in February 2024. The package has been downloaded

First seen on thehackernews.com

Jump to article: thehackernews.com/2025/12/malicious-npm-package-uses-hidden.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link