Jan. 17, 2023, 9:33 a.m. | Dhanesh Dodia - HeyDanny

InfoSec Write-ups - Medium infosecwriteups.com

Discock Stealer — Another Polymorphic Malware like WASP Stealer

Real Threat to Open Source Ecosystems — Threat groups are poisoning the open source packages to steal cookies, crypto keys and lots of other juicy data.

What is the package name: http5When was it released: Jan 3, 2023Which version we are talking about: 0.0.1How many times it was downloaded in 30 days: 61What the package says it to be: “A small example package”

Where we started

We …

application security cybersecurity malware source code stealer supply chain attack wasp wasp stealer

Security Engineer

@ Celonis | Munich, Germany

Security Engineer, Cloud Threat Intelligence

@ Google | Reston, VA, USA; Kirkland, WA, USA

IT Security Analyst*

@ EDAG Group | Fulda, Hessen, DE, 36037

Scrum Master/ Agile Project Manager for Information Security (Temporary)

@ Guidehouse | Lagunilla de Heredia

Waste Incident Responder (Tanker Driver)

@ Severn Trent | Derby , England, GB

Risk Vulnerability Analyst w/Clearance - Colorado

@ Rothe | Colorado Springs, CO, United States