Diamond Member ThaHaka 0 Posted November 28 Diamond Member Share Posted November 28 This is the hidden content, please Sign In or Sign Up Cybersecurity researchers have discovered a software supply chain ******* that has remained active for over a year on the npm package registry by starting off as an innocuous library and later adding malicious code to steal sensitive data and mine cryptocurrency on infected systems. The package, named @0xengine/xmlrpc, was originally published on October 2, 2023 as a JavaScript-based XML-RPC This is the hidden content, please Sign In or Sign Up Link to comment https://hopzone.eu/forums/topic/176993-h4ckn3wsxmlrpc-npm-library-turns-malicious-steals-data-deploys-crypto-miner/ Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now