Skip to content

other

dotnet-runtime-base

npm package identified as malicious in security advisories.

Current clusters

security1 publisher

Kothamine RAT tunnels its commands through Tailscale's tailcat

Malwarebytes found Kothamine, an undocumented Windows RAT hidden in malicious npm packages, that takes its 30-plus commands over Tailscale's tailcat. The encrypted channel leaves no command-and-control domain to block, pushing detection onto the endpoint.

Publishers:malwarebytes.com

Reality

Evidence60
Adoption
Insufficient
Hype gap+5
Incentives
Insufficient
Confidence58