malware npm

strapi-plugin-api

discovered 2026-04-03

strapi-plugin-api is identified in the SafeDep analysis "Thirty-Six Malicious npm Strapi Packages Deploy Redis RCE, Database Theft, and Persistent C2". >

Threat types

c2_agent

Malicious versions

  • 3.6.8
  • 3.6.9

Campaigns

Indicators

Techniques

Read the full analysis →