Surge in Malware Attacks Exploiting n8n Automation Platform
Cybersecurity experts have reported a significant rise in malware attacks utilizing n8n, a widely used workflow automation platform. Threat actors have been weaponizing n8n to launch sophisticated phishing campaigns, bypassing traditional security measures and using trusted infrastructure to deliver malicious payloads.
The attacks primarily affect users of n8n’s cloud-hosted services, with a staggering 686% increase in email-based threats linked to n8n webhooks observed in March 2026 compared to the previous year. These malicious emails often disguise themselves as shared documents, tricking recipients into downloading harmful software.
To protect against these threats, users should avoid clicking on suspicious links, enable two-factor authentication, and keep their software updated. Organizations are urged to educate employees on recognizing phishing attempts.
Risk Level: High
As these attacks leverage legitimate platforms, the potential for widespread impact is considerable.
Source: View Original Report
