Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js
The Hacker News
2 weeks ago

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

By info@thehackernews.com (The Hacker News)

Beta release versions of two npm packages in the @joyfill namespace have been compromised to deliver a remote access trojan (RAT) associated with the DEV#POPPER malware family. The list of affected packages is as follows - @joyfill/layouts@0.1.2-2773.beta.0 @joyfill/components@4.0.0-rc24-2773-beta.4 The two packages "contain an import-time JavaScript implant that resolves encrypted code

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.