Get a Pentest and security assessment of your IT network.

News

Microsoft Azure Developers Awash in PII-Stealing npm Packages

Researchers found hundreds of malicious packages in the npm repository of open-source JavaScript code, designed to steal personally identifiable information (PII) in a large-scale typosquatting attack against Microsoft Azure cloud users. The set of packages appeared earlier this week and steadily grew since then, from about 50 packages to more than 200. JFrog Security Research team said the attack was a targeted attack against the entire @azure npm scope, by an attacker that employed an automatic script to create accounts and upload malicious packages.”]

Source: https://threatpost.com/microsoft-azure-developers-pii-stealing-npm-packages/179096/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks