Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

Beta release versions of two npm packages in the @joyfill namespace have been compromised to deliver a remote access trojan (RAT) associated with the DEV#POPPER malware family.

The list of affected packages is as follows –

@joyfill/layouts@0.1.2-2773.beta.0
@joyfill/components@4.0.0-rc24-2773-beta.4

The two packages “contain an import-time JavaScript implant that resolves encrypted code

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Clinical Failure Rates over the Decades: Yikes

Clinical Failure Rates over the Decades: Yikes Source: Hacker News

WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning

WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (RCE)

Task Failed Successfully: Saturating NIC and Disk Bandwidth

Task Failed Successfully: Saturating NIC and Disk Bandwidth Source: Hacker News