A new set of 48 malicious npm packages have been discovered in the npm repository with capabilities to deploy a reverse shell on compromised systems.
“These packages, deceptively named to appear legitimate, contained obfuscated JavaScript designed to initiate a reverse shell on package install,” software supply chain security firm Phylum said.
All the counterfeit packages have been published byRead More

48 Malicious npm Packages Found Deploying Reverse Shells on Developer Systems [email protected] (The Hacker News)
by
Tags:
