Back to Intel

Intel Node

Laravel Lang packages hijacked to deploy credential-stealing malware

lowmalware2026-05-23T20:48:23+00:00source excerpt
malware

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

A supply chain attack targeting the Laravel Lang localization packages has exposed developers to a sophisticated credential-stealing malware campaign after attackers abused GitHub version tags to distribute malicious code through Composer packages.

Read Original Source