Malware
BeaverTail
BeaverTail is a JavaScript malware primarily distributed through NPM packages.
BeaverTail is a JavaScript malware family operated by WageMole.
Background
BeaverTail is JavaScript malware spread mainly via NPM packages. It serves both as an information stealer and as a loader for later stages, in particular the multi-stage Python backdoor called InvisibleFerret. Among its targets are cryptocurrency wallets and credit card details saved in victims' browsers, and the code is heavily obfuscated to dodge detection. Operators either publish poisoned NPM packages carrying BeaverTail to GitHub or graft the BeaverTail code into otherwise legitimate NPM projects. The discovery of separate Windows and macOS variants suggests the family remains in active development.
Source: Malpedia (Fraunhofer FKIE).