Jan. 24, 2024, 3:10 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news




Sonatype has identified two npm packages distube-config and discordyt that typosquat open source packages like Discord modules, in an attempt to infect Windows users with a Trojan. Our security researcher, Juan Aguirre, who analyzed the malware shares some insights.


Article Link: Fake 'distube-config' npm package drops Windows info-stealing malware


1 post - 1 participant


Read full topic

article config discord drops fake infect info info-stealing malware insights link malware modules npm npm package open source open source packages package packages researcher security security researcher sonatype stealing trojan windows

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Security Operations Manager-West Coast

@ The Walt Disney Company | USA - CA - 2500 Broadway Street

Vulnerability Analyst - Remote (WFH)

@ Cognitive Medical Systems | Phoenix, AZ, US | Oak Ridge, TN, US | Austin, TX, US | Oregon, US | Austin, TX, US

Senior Mainframe Security Administrator

@ Danske Bank | Copenhagen V, Denmark