
Research
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
A README.md file is intended to quickly orient readers to what your project can do. New to Markdown? Learn more
In Git, branches are cheap. You should use them whenever you're making changes to your repository. Edit this file by clicking on the edit icon.
Then make some changes to this ReadMe file.
Make some edits to this blockquote
When you are done, click the dropdown arrow next to the save button - that will allow you to commit your changes to a new branch.
Pull requests are the way to move changes from a topic branch back into the master branch.
Click on the Pull Requests page in the CODE hub, then click "New Pull Request" to create a new pull request from your topic branch to the master branch.
When you are done adding details, click "Create Pull request". Once a pull request is sent, reviewers can see your changes, recommend modifications, or even push follow-up commits.
First time creating a pull request? Learn more
If you haven't done so yet:
Then clone this repo to your local machine to get started with your own project.
Happy coding!
FAQs
Server da Agenda Cultural
The npm package Server receives a total of 42 weekly downloads. As such, Server popularity was classified as not popular.
We found that Server demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
Security News
pip, PDM, pip-audit, and the packaging library are already adding support for Python’s new lock file format.
Product
Socket's Go support is now generally available, bringing automatic scanning and deep code analysis to all users with Go projects.