Fake ‘interview’ repos lure Next.js devs into running secret-stealing malware

Come for the coding test, stay for the C2 traffic

Next.js developers are once again in the crosshairs as hackers seed malicious repositories disguised as legitimate projects, according to Microsoft, which said a limited set of those repos were directly tied to observed compromises.…

This article has been indexed from The Register – Security

Read the original article: