Socket
Socket
Sign inDemoInstall

@kennylindahl/malicious-npm-package

Package Overview
Dependencies
105
Maintainers
1
Versions
11
Alerts
File Explorer

Advanced tools

Install Socket

Detect and block malicious and high-risk dependencies

Install

    @kennylindahl/malicious-npm-package

Do not use this package unless you understand that it can make your computer vulnerable to more or less any command by the attacker!


Version published
Maintainers
1
Created

Readme

Source

Reverse shell via proxy - Cyber security research

Do not use this package unless you understand that it can make your computer vulnerable to more or less any command by the attacker!

Background

This is to demonstrate that node.js is not very secure and that it can easily be controlled by anyone who is using third party packages, either from a developers machine or a server.

FAQs

Last updated on 27 Jul 2023

Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc