05-09-2023, 12:14 PM
Npm Packages Vulnerable to Old-School Weapon: the 'Shift' Key
For years, hackers could have tricked enterprises into downloading malware by simply de-capitalizing letters in uppercase-named npm packages.
https://www.darkreading.com/threat-intel...-shift-key
For years, hackers could have tricked enterprises into downloading malware by simply de-capitalizing letters in uppercase-named npm packages.
https://www.darkreading.com/threat-intel...-shift-key