SECURITY·중요도 7·2026. 09. 18.·The Hacker News
Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer
── KO ──────────────────
LLM을 사용해 PhantomRaven 멀웨어 개발한 버그 바운티 헌터가 발견됐다.
금전적 동기를 가진 위협 행위자가 JavaScript 기반의 정보 탈취기인 PhantomRaven을 npm 패키지 레지스트리에서 개발 및 배포한 것으로 확인됐다. 전문가들은 이 멀웨어가 LLM을 사용해 작성되었을 가능성이 높다고 평가하며, 구체적인 설명과 자리 표시자 코드, 통계적 토큰 분석 패턴 등을 근거로 들었다.
── EN ──────────────────
A bug bounty hunter likely used an LLM to develop the PhantomRaven malware.
A financially motivated threat actor has been identified as the developer and distributor of a JavaScript-based information stealer called PhantomRaven via the npm package registry. Experts assess with high confidence that the malware was likely written using a large language model (LLM), based on verbose comments, placeholder code, and statistical token-analysis patterns.