Malicious Go, npm Packages Deliver Cross-Platform Malware, Trigger Remote Data Wipes

Cybersecurity researchers have discovered a set of 11 malicious Go packages that are designed to download additional payloads from remote servers and execute them on both Windows and Linux systems.
“At runtime the code silently spawns a shell, pulls a second-stage payload from an interchangeable set of .icu and .tech command-and-control (C2) endpoints, and executes it in memory,” Socket security

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

The AI-Powered Security Shift: What 2025 Is Teaching Us About Cloud Defense

Related Posts
Total
0
Share