Get a Pentest and security assessment of your IT network.

News

Popular ‘coa’ NPM library hijacked to steal user passwords

Popular npm library ‘coa’ was hijacked today with malicious code injected into it, ephemerally impacting React pipelines around the world. ‘Coa’ is a command-line options parser for Node.js projects and is used by almost 5 million open source repositories on GitHub. Another popular npm component ‘rc’ was also found to have been hijacked, with malicious versions 1.9, 1.3.9 and 2.1.3. Malware identical to hacked ‘ua-parser-js’ and fake Noblox packages.”]

Source: https://www.bleepingcomputer.com/news/security/popular-coa-npm-library-hijacked-to-steal-user-passwords/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks