Get a Pentest and security assessment of your IT network.

Cyber Security

Rogue Developer Infects Widely Used NodeJS Module to Steal Bitcoins

NodeJS module with nearly 2 million downloads a week was compromised after one of its open-source contributor gone rogue. The malicious code was added to Event-Stream version 3.3.6, published on September 9 via NPM repository, and had since been downloaded by nearly 8 million application programmers. The module has been designed to target people using BitPay’s Bitcoin wallet app, Copay. BitPay assures its users that the BitPay app was not vulnerable to the malicious code. Users should assume that private keys on affected wallets may have been compromised so they should move funds to new wallets.

Source: https://thehackernews.com/2018/11/nodejs-event-stream-module.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security