Menu

Post image 1
Post image 2
1 / 2
0

Malicious npm Package Targeted Claude's /mnt/user-data Directory — Here's What Agentic Pipelines Are Missing

DEV Community: appsec·Cor E·3 days ago
#giq4EvXU
#dev#tool#claude#sentinel#directory#package
Reading 0:00
15s threshold

A malicious npm package named mouse5212-super-formatter showed up on the npm registry last month with one specific target: /mnt/user-data , the directory Claude AI uses for uploads and outputs. Its job was straightforward — harvest whatever files Claude had touched and ship them out. This isn't a generic supply chain attack that happened to brush against an AI tool. It was purpose-built for Claude's agentic environment. Someone mapped the filesystem layout of Claude's working directory and wrote an exfiltration payload around it. That's a meaningful escalation. How the Attack Actually Worked The package, mouse5212-super-formatter , was published to the public npm registry under a name plausible enough to land in a project's dependencies — either directly or transitively. The attack vector is the trust developers extend to npm packages used in or adjacent to agentic pipelines.…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More