Security
Headlines
HeadlinesLatestCVEs

Headline

Researchers Uncover RAT-Dropping npm Package Targeting Gulp Users

Cybersecurity researchers have uncovered a new suspicious package uploaded to the npm package registry that’s designed to drop a remote access trojan (RAT) on compromised systems. The package in question is glup-debugger-log, which targets users of the gulp toolkit by masquerading as a “logger for gulp and gulp plugins.” It has been downloaded 175 times to date. Software supply chain security

The Hacker News
#nodejs#The Hacker News

The Hacker News: Latest News

New Flaws in Citrix Virtual Apps Enable RCE Attacks via MSMQ Misconfiguration