← Back to feed
general BleepingComputer

Malicious npm packages evade install-script defenses at runtime

BleepingComputer

An ongoing npm malware campaign involving the 'indexed-btree' package shows how threat actors bypass supply chain defenses by hiding malicious code in a pack...

Read the full story BleepingComputer →

Related Coverage

general EU data regulator fines Google more than $460 million for location data violations The Record · Sep 21 general WordPress Click2Shell flaw lets hackers execute PHP on the server BleepingComputer · Sep 21 general Foreign Hackers Target Two Colorado Water Utilities Security Affairs · Sep 21