Open minho-comcom-ai opened 4 months ago
https://github.com/carfulot/log-electron was forked from this repo and published via npmjs (https://www.npmjs.com/package/log-electron).
Renaming PR contains the malware loader code: https.request(logPkgJson.testing and the payload location: https://raw.githubusercontent.com/carfulot/log-electron/master/src/core/testing in package.json
https.request(logPkgJson.testing
https://raw.githubusercontent.com/carfulot/log-electron/master/src/core/testing
package.json
CC: @megahertz @github @npm
Thanks, reported
https://github.com/carfulot/log-electron was forked from this repo and published via npmjs (https://www.npmjs.com/package/log-electron).
Renaming PR contains the malware loader code:
https.request(logPkgJson.testing
and the payload location:https://raw.githubusercontent.com/carfulot/log-electron/master/src/core/testing
inpackage.json
CC: @megahertz @github @npm