Discord.dll: successor to npm “fallguys” malware went undetected for 5 months

Read the original article: Discord.dll: successor to npm “fallguys” malware went undetected for 5 months


This week, the Sonatype Security Research team has identified a series of counterfeit components in the npm ecosystem. These intentionally malicious packages seem to be doing similar, shady things to the malicious “fallguys” npm package discovered in September (those were stealing web browser files and Discord gaming IMs).  

The post Discord.dll: successor to npm “fallguys” malware went undetected for 5 months appeared first on Security Boulevard.


Read the original article: Discord.dll: successor to npm “fallguys” malware went undetected for 5 months