Vendor
Joyfill
- First Reported
- Jul 28, 2026
- Latest Reported
- Jul 28, 2026
Reported Context (1)
- Two npm beta releases in the @joyfill namespace contain an import-time JavaScript implant that resolves encrypted code through Tron, Aptos, and BNB Smart Chain transactions. Static analysis shows that its primary branch Compromised Joyfill npm Beta Releases Deliver DEV#POPPER RAT
Malware (3)
MITRE ATT&CK (9)
Products (9)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.