all InfoSec news
48 Malicious npm Packages Found Deploying Reverse Shells on Developer Systems
Nov. 3, 2023, 6:03 a.m. | info@thehackernews.com (The Hacker News)
The Hacker News thehackernews.com
"These packages, deceptively named to appear legitimate, contained obfuscated JavaScript designed to initiate a reverse shell on package install," software supply chain security firm Phylum said.
All the counterfeit packages have been published by
capabilities compromised deploy developer found install javascript malicious malicious npm npm npm repository obfuscated package packages repository reverse reverse shell security shell shells software software supply chain software supply chain security supply supply chain supply chain security systems
More from thehackernews.com / The Hacker News
Jobs in InfoSec / Cybersecurity
SOC 2 Manager, Audit and Certification
@ Deloitte | US and CA Multiple Locations
Professional Services Resident Consultant / Senior Professional Services Resident Consultant - AMS
@ Zscaler | Bengaluru, India
Head of Security, Risk & Compliance
@ Gedeon Richter Pharma GmbH | Budapest, HU
Unarmed Professional Security Officer - County Hospital
@ Allied Universal | Los Angeles, CA, United States
Senior Software Engineer, Privacy Engineering
@ Block | Seattle, WA, United States
Senior Cyber Security Specialist
@ Avaloq | Bioggio, Switzerland