Blåhaj Lemmy
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
codeinabox@programming.dev to Next.js@programming.devEnglish · 23 days ago

Developer-targeting campaign using malicious Next.js repositories

www.microsoft.com

external-link
message-square
0
link
fedilink
4
external-link

Developer-targeting campaign using malicious Next.js repositories

www.microsoft.com

codeinabox@programming.dev to Next.js@programming.devEnglish · 23 days ago
message-square
0
link
fedilink
Developer-targeting campaign using malicious Next.js repositories | Microsoft Security Blog
www.microsoft.com
external-link
A developer-targeting campaign leveraged malicious Next.js repositories to trigger a covert RCE-to-C2 chain through standard build workflows. The activity demonstrates how staged command-and-control can hide inside routine development tasks.

cross-posted from: https://lemmy.bestiver.se/post/954231

Comments

alert-triangle
You must log in or # to comment.

Next.js@programming.dev

nextjs@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !nextjs@programming.dev

A community for discussing and posting things relating to the next.js framework

Looking for mods, if you want to mod the community feel free to dm Ategon

https://nextjs.org/

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 8 users / week
  • 14 users / month
  • 19 users / 6 months
  • 1 local subscriber
  • 103 subscribers
  • 20 Posts
  • 4 Comments
  • Modlog
  • mods:
  • Vacant@programming.dev
  • BE: 0.19.16
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org