Malicious Npm Package Stealing Discord Credentials and Browser Data

Read the original article: Malicious Npm Package Stealing Discord Credentials and Browser Data


ZDNet reported that researchers at Sonatype discovered a malicious JavaScript library recently published on the node package manager (npmjs.com) website that steals sensitive files and credentials from various web browsers and the Discord client. The package discord.dll will steal the LevelDB databases that the browsers used to store the history as well as access tokens […]

The post Malicious Npm Package Stealing Discord Credentials and Browser Data appeared first on Binary Defense.


Read the original article: Malicious Npm Package Stealing Discord Credentials and Browser Data