Security News Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer TheHackerNews Daniel Bender 18 Sep 2026 Share CrowdStrike says PhantomRaven was likely LLM-generated and spread through malicious npm packages that collect developer credentials and CI/CD secrets.