Get a Pentest and security assessment of your IT network.

News

Malicious code in the Node.js npm registry shakes open source trust model

39 malicious packages were removed from the Node.js package management registry. Packages are used by developers to implement common functions without having to write the code from scratch. The packages had the same functionality as the original ones with an additional ability to transfer copies of data elsewhere. Developers should check for both version numbers and the source of the package when looking for potential bad packages. There is nothing stopping package owners from using similar names, and just having similar names doesnt automatically mean malicious intent.”]

Source: https://www.csoonline.com/article/3214624/malicious-code-in-the-node-js-npm-registry-shakes-open-source-trust-model.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Thousands of Magento websites compromised to serve malware

News

Office 365 Secure Score: An Introduction