Remove author ax-sharma
article thumbnail

Four npm packages found opening shells and collecting info on Linux, Windows systems

Security Affairs

“It is possible that all four packages were authored by the same attacker(s) despite conflicting data provided in the package.json manifests.” The malicious code could work on both Windows and *nix operating systems, including major distros, including Linux, FreeBSD, OpenBSD. ” reported Bleeping Computer.

Libraries 139
article thumbnail

Malicious npm packages spotted delivering njRAT Trojan

Security Affairs

db-json.js “ Both packages were created by the same author last week who masqueraded them as tools to work with JSON files. . “This time, the typosquatting packages identified by us are laced with a popular Remote Access Trojan (RAT).” ” states the post published by Sonatype. “The malicious packages are: jdb.js

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Malicious NPM project steals browser info and Discord accounts

Security Affairs

Sonatype researcher Ax Sharma discovered an npm package, dubbed discord.dll , that contains malicious code designed to steal sensitive files from a user’s browsers and Discord application. Security researchers discovered today an npm package that contains malicious code designed to steal sensitive Discord and browser files.

Libraries 101
article thumbnail

Massive threat campaign strikes open-source repos, Sonatype spots new CursedGrabber malware

Security Affairs

was published to npm by the same author luminate_ aka Luminate-D who is also behind additional malware discovered last week: discord.dll , discord.app, wsbd.js, and ac-addon. has scored just under a 100 downloads as Sonatype discovered it almost immediately after the author published it. About the author: Ax Sharma.

Archiving 133