Mac@programming.dev to Programming@programming.dev · 11 months agoSSH keys stolen by stream of malicious PyPI and npm packageswww.bleepingcomputer.comexternal-linkmessage-square10fedilinkarrow-up1123cross-posted to: hackernews@derp.foo
arrow-up1123external-linkSSH keys stolen by stream of malicious PyPI and npm packageswww.bleepingcomputer.comMac@programming.dev to Programming@programming.dev · 11 months agomessage-square10fedilinkcross-posted to: hackernews@derp.foo
minus-squareblargerer@kbin.sociallinkfedilinkarrow-up20·11 months agoIts just a weird word choice for many/a group. If you read the article they are typo squatting legitimate packages with alternate versions that steal the ssh keys.
Its just a weird word choice for many/a group. If you read the article they are typo squatting legitimate packages with alternate versions that steal the ssh keys.