Resources

Blogs and Articles

Explore Blogs and Research Articles from the team on the latest trends and methods in Cybersecurity.

Featured

MALFEX - A malicious npm postinstall no advisory has caught for fourteen months

CloudSEK uncovered MALFEX, a long-running npm supply-chain campaign linked to a single operator, using malicious packages to deploy RATs and credential stealers. Two packages remain installable, including one malicious postinstall that evaded advisories for 14 months.

September 30, 2026

Subscribe to CloudSEK Resources

Subscribe to the latest industry news, threats and resources.

Download BeVigil App

Access to Underground Intelligence, Blog and Threat intelligence articles on your mobile as soon as it is published.

Google Play button to download App
Download CloudSEK BeVigil App
A newsletter that is upto date

Subscribe to our newsletter

Subscribe to the latest industry news, threats and resources.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
We Respect your privacy. Read our friendly privacy policy.