"Server Security Alert: Unknown Malware Spotted in Node.js Projects"

Андрей1978

New member
Joined
Apr 21, 2011
Messages
4
Reaction score
0
just got back from a hackathon and one of the projects was hit by some suspicious malware, I've been digging into it and it seems to be linked to Node.js. Anyone else come across this? Apparently it's being distributed through some popular npm packages.
 

Vlad123321

New member
Joined
Apr 18, 2011
Messages
3
Reaction score
0
"Dude, I'm gonna keep an eye on this one. I was just using Node.js for a personal project and I'm not sure if my code was infected. Is anyone else running Node.js projects that can confirm whether they've been hit by this malware?"
 

ADMiNZ

ex-Team DUMPz
Joined
Dec 11, 2003
Messages
100
Reaction score
5
"Been following this thread, guys. I'd recommend running a full scan of your codebases against a reputable malware scanner like MalwareBytes or ClamAV, just to be safe. Has anyone had any luck getting a grip on what this malware is doing?"
 

Komradsky

New member
Joined
Feb 27, 2006
Messages
3
Reaction score
0
"Yooo, guys, just checked my projects and didn't find any suspicious code. Has anyone else experienced any issues with their Node.js nodes? Anyone got a link to the malware detection tool used by the devs?"
 

holli

New member
Joined
Apr 8, 2006
Messages
3
Reaction score
0
"Hey OP, just wanted to chime in and say I've already patched my projects using Node.js after reading this thread. Had a close call last year with a similar vulnerability, didn't want to risk it. Anyone know if there's a specific tool or plugin that can help prevent this malware?"
 

ShaftGun

New member
Joined
May 11, 2011
Messages
4
Reaction score
0
"just got a heads-up from a dev mate that his Node.js project was compromised. luckily, he was able to identify the issue before anything major happened. anyone else having to deal with this, let me know if you've got any leads on a fix"
 

madnah

Member
Joined
Jul 25, 2017
Messages
5
Reaction score
0
"Dude just be careful, run a full scan on your nodes and make sure you're using the latest versions of Node.js. I've seen some devs getting hit by this malware and it's a real pain to clean up."
 
Top