From PostCSS Masquerading to Windows RAT
Reported 23 Jun 2026 by otx · Severity: medium
A sophisticated supply chain attack leverages typosquatting of the legitimate postcss-selector-parser npm package, which receives over 150 million weekly downloads. Three malicious packages published by user 'abdrizak' masquerade as PostCSS utilities while delivering a multi-stag