註冊並分享邀請連結,可獲得影片播放與邀請獎勵。

Moshe Siman Tov Bustan
@MosheTov
Security Research Team Lead @OX__Security Guitars @CompileBand 23x CVEs 3x Conference Talks
加入 October 2013
485 正在關注    868 粉絲
🚨 NPM Malware-slop Alert!🚨 We detected and reported a malware-slop package to npm - the malware uses it's OWN PRIVATE GitHub token, which is EMBEDDED INSIDE the malware itself - to read sensitive information and upload it to the threat actor's GitHub repository. The malware is still live on npm - The threat actor's GitHub page was opened 5h ago - Detailed report will be published tomorrow.
顯示更多
0
11
173
21
轉發到社區