- cross-posted to:
- netsec
- cross-posted to:
- netsec
Nascent Malware Campaign Targets npm, PyPI, and RubyGems Developers::Phylum has been extremely busy in the past few weeks, reporting on multiple malware campaigns, including malicious updates to npm packages, malware masquerading as a GCC binary, and a package containing a complicated command-and-control setup for data exfiltration.
We monitor open-source ecosystems and analyze every package’s source code and metadata
You must log in or register to comment.