Source |
The Hacker News |
Identifiant |
3577041 |
Date de publication |
2021-10-28 00:05:43 (vue: 2021-10-28 22:06:10) |
Titre |
Malicious NPM Libraries Caught Installing Password Stealer and Ransomware |
Texte |
Malicious actors have yet again published two more typosquatted libraries to the official NPM repository that mimic a legitimate package from Roblox, the game company, with the goal of distributing stealing credentials, installing remote access trojans, and infecting the compromised systems with ransomware.
The bogus packages - named "noblox.js-proxy" and "noblox.js-proxies" - were found to |
Notes |
|
Envoyé |
Oui |
Condensat |
access actors again bogus caught company compromised credentials distributing found from game goal have infecting installing legitimate libraries malicious mimic more named noblox npm official package packages password proxies proxy published ransomware remote repository roblox stealer stealing systems trojans two typosquatted yet |
Tags |
Ransomware
|
Stories |
|
Move |
|