Back to all news
Security

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

The Hacker News·September 22, 2026·1 min read
Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

A malicious npm package named "indexed-btree" hid its malicious loader in runtime application code instead of using lifecycle scripts, according to Checkmarx. The package mimics the legitimate sorted-btree utility, indicating threat actors are shifting tactics to evade recent security controls. The malicious behavior was observed before the package was removed from the registry.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store