Four npm packages found opening shells and collecting info on Linux, Windows systems

Read the original article: Four npm packages found opening shells and collecting info on Linux, Windows systems


On Thursday, four JavaScript packages have been removed from the npm portal because they have been found containing malicious code. NPM staff removed four JavaScript packages from the npm portal because were containing malicious code. Npm is the largest package repository for any programming language. The four packages, which had a total of one thousand of downloads, are: plutov-slack-client […]

The post Four npm packages found opening shells and collecting info on Linux, Windows systems appeared first on Security Affairs.


Read the original article: Four npm packages found opening shells and collecting info on Linux, Windows systems