
ISC StormCast for Friday, January 5th, 2024
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Malicious Packages in PyPy and NPM Pranks
This chapter delves into the discovery of three malicious packages in PyPy that utilize a staged payload to deploy crypto coin miners while evading detection. It also covers a prank in the NPM ecosystem involving an 'everything' package that installs all available NPM packages, leading to system freezes and complications for package authors.
Transcript
Play full episode