cognitive cybersecurity intelligence

News and Analysis

Search

New npm Malware Attack Infects Popular Ethereum Library with Backdoor

Security researchers at ReversingLabs have identified a new malware attack on the npm package repository. The attack involves modifying two packages, ethers-provider2 and ethers-providerz, which work to ‘patch’ the popular Ethereum package, ethers, with a malicious file. This allows attackers to gain access to compromised systems. The attack is distinctive for the extensive lengths taken to hide the payload and cover its tracks.

Source: hackread.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts

What are business logic vulnerabilities?

Business logic vulnerabilities in software allow attackers to exploit flaws in design, enabling them to circumvent security measures and manipulate pricing, authentication, and other key