sh.itjust.works
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
expertmadman to Cybersecurity · 2 years ago

Sophisticated, Highly-Targeted Attacks Continue to Plague npm

message-square
7
link
fedilink
13

Sophisticated, Highly-Targeted Attacks Continue to Plague npm

expertmadman to Cybersecurity · 2 years ago
message-square
7
link
fedilink
alert-triangle
You must log in or register to comment.
  • mo_ztt ✅@lemmy.world
    link
    fedilink
    English
    arrow-up
    9
    ·
    2 years ago

    Article? It’s just the image

    • expertmadmanOP
      link
      fedilink
      arrow-up
      7
      ·
      2 years ago

      I screwed up submission

      https://blog.phylum.io/sophisticated-highly-targeted-attacks-continue-to-plague-npm/

      • mo_ztt ✅@lemmy.world
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        1
        ·
        2 years ago

        All good, you can still go back and edit it to fix it.

        • sugar_in_your_tea
          link
          fedilink
          arrow-up
          4
          ·
          2 years ago

          Yup, this isn’t Reddit.

          • mo_ztt ✅@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            arrow-down
            1
            ·
            2 years ago

            Yeah sure, you can edit post titles, but you have to remember that we don’t yet have an unusable chat or a very limited selection of mascot-themed avatars. CHRIST WHAT WERE WE THINKING

            • mo_ztt ✅@lemmy.world
              link
              fedilink
              English
              arrow-up
              3
              arrow-down
              1
              ·
              edit-2
              2 years ago

              Also, why hasn’t he updated the story yet, and why are people upvoting the nonexistent story… I am being 100% sincere when I say that seeing a community of people upvote a story, when the actual link to the story is broken so you can’t read it, makes me rethink what type of people make up that community and whether I want to be a part of it.

              IDK, maybe it’s some federation thing where he updated the story a while ago and the change just doesn’t propagate properly or quickly or something.

              Edit: Nope, not a federation thing, as of T plus 9 hours. What are y’all upvoting?

  • expertmadmanOP
    link
    fedilink
    arrow-up
    5
    ·
    2 years ago

    https://blog.phylum.io/sophisticated-highly-targeted-attacks-continue-to-plague-npm/

    tl;dr several packages were recently published to npm that appear to be subtle command and control. Behaviors of the infrastructure seem to mimic those recently identified by Phylum as being nation state activity from North Korea.

Cybersecurity

cybersecurity

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 4 users / day
  • 538 users / week
  • 1.33K users / month
  • 4.77K users / 6 months
  • 1.58K local subscribers
  • 7.67K subscribers
  • 3.09K Posts
  • 5.53K Comments
  • Modlog
  • mods:
  • Kid
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.11
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org