URL has been copied successfully!
XML-RPC npm Library Turns Malicious, Steals Data, Deploys Crypto Miner
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

XML-RPC npm Library Turns Malicious, Steals Data, Deploys Crypto Miner

Cybersecurity researchers have discovered a software supply chain attack that has remained active for over a year on the npm package registry by starting off as an innocuous library and later adding malicious code to steal sensitive data and mine cryptocurrency on infected systems.The package, named @0xengine/xmlrpc, was originally published on October 2, 2023 as a JavaScript-based XML-RPC

First seen on thehackernews.com

Jump to article: thehackernews.com/2024/11/xmlrpc-npm-library-turns-malicious.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link