Malicious npm packages deliver infostealer malware to developers

Lisa Kern

Security firm Socket has uncovered ten malicious packages in the npm repository that target developers on Windows, macOS, and Linux systems. These packages, available since July, use typosquatting and sophisticated obfuscation to install infostealer malware. The malware steals credentials from browsers, SSH keys, and configuration files before exfiltrating data to attackers.

Tovuti hii hutumia kuki

Tunatumia kuki kwa uchambuzi ili kuboresha tovuti yetu. Soma sera yetu ya faragha sera ya faragha kwa maelezo zaidi.
Kataa