Ludrol@szmer.info to linuxmemes@lemmy.world · 5 days agoNPM provides cross-platform packages for your Javascript needsszmer.infoimagemessage-square15linkfedilinkarrow-up1327arrow-down17
arrow-up1320arrow-down1imageNPM provides cross-platform packages for your Javascript needsszmer.infoLudrol@szmer.info to linuxmemes@lemmy.world · 5 days agomessage-square15linkfedilink
minus-squareWillem@kutsuya.devlinkfedilinkarrow-up34·5 days agolemmy loop you in: https://infosec.exchange/@ifin/116735279416101129 TL;DR; lots of aur packages got hijacked and install a infostealer, if you updated today/yday, there is a reasonable chance you got hit by it :( also: the info stealer is installed by aur via npm
minus-squarepnwpixel@programming.devlinkfedilinkarrow-up11·5 days agoI bet you’ve been itching to drop that clever pun out for quite some time lol
minus-squareLudrol@szmer.infoOPlinkfedilinkarrow-up3·5 days ago400+ Arch Linux AUR Packages Compromised in a Supply Chain Attack Deploying Infostealers
OOTL
lemmy loop you in: https://infosec.exchange/@ifin/116735279416101129
TL;DR; lots of aur packages got hijacked and install a infostealer, if you updated today/yday, there is a reasonable chance you got hit by it :(
also: the info stealer is installed by aur via npm
I bet you’ve been itching to drop that clever pun out for quite some time lol
400+ Arch Linux AUR Packages Compromised in a Supply Chain Attack Deploying Infostealers