Security News > 2024 > January > Malicious NPM Packages Exfiltrate Hundreds of Developer SSH Keys via GitHub
2024-01-23 14:19
Two malicious packages discovered on the npm package registry have been found to leverage GitHub to store Base64-encrypted SSH keys stolen from developer systems on which they were installed. The modules named warbeast2000 and kodiak2k were published at the start of the month, attracting 412 and 1,281 downloads before they were taken down by the npm
News URL
https://thehackernews.com/2024/01/malicious-npm-packages-exfiltrate-1600.html
Related news
- Malicious npm Packages Target Developers' Ethereum Wallets with SSH Backdoor (source)
- BeaverTail Malware Resurfaces in Malicious npm Packages Targeting Developers (source)
- New Phishing Tool GoIssue Targets GitHub Developers in Bulk Email Campaigns (source)
- GoIssue phishing tool targets GitHub developer credentials (source)