Back to all news
Security

WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage

The Hacker News·September 18, 2026·1 min read
WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage

Cybersecurity researchers have discovered 13 npm packages delivering a previously undocumented JavaScript stealer codenamed WeaselBiscuit. The malware, per OpenSourceMalware, shows functional overlaps with BeaverTail and another strain linked to the DPRK's Contagious Interview campaign. It targets Chrome extension storage to harvest sensitive data, posing a supply-chain risk to developers using these packages.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store