3 ms·
Contagious Interview Campaign Escalates with 67 Malicious NPM Packages and New
- cranberryturkey 1y agothere's a ton of crypto related scams where they want you to run their repo locally and it steals any wallets you have or browser sessions.
- cyanydeez 1y agoI know sockets probably aware of this, but the root scam seems to start with forks of existing libraries. NPM should be doing some finger printing of new projects and flag any that dont meet a reasonable threshold. Obviously obfuscation will occur, which could become its own subsequent flag. Anyway, keep up the good work feross.
- hulitu 1y ago> Contagious Interview Campaign Escalates with 67 Malicious NPM Packages and New What is the problem here ? Npm is included in all major distros. Nothing to see here. Please, move along.