Over 70 Malicious npm and VS Code Packages Found Stealing Data and Crypto

As many as 60 malicious npm packages have been discovered in the package registry with malicious functionality to harvest hostnames, IP addresses, DNS servers, and user directories to a Discord-controlled endpoint.
The packages, published under three different accounts, come with an install‑time script that’s triggered during npm install, Socket security researcher Kirill Boychenko said in a

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

CISO’s Guide To Web Privacy Validation And Why It’s Important

Next Post

Employees Searching Payroll Portals on Google Tricked Into Sending Paychecks to Hackers

Related Posts
Total
0
Share