Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Popular NPM Package Hijacked to Publish Crypto-mining Malware
Malware and Vulnerabilities
October 25, 2021
The Hacker News
The U.S. CISA on Friday warned of cryptomining and password-stealing malware embedded in "UAParser.js," a popular JavaScript NPM library with over 6 million weekly downloads.
Read More
NPM Package
CISA Advisory
Cryptomining Malware
UAParser.js
Sensitive Information
Publisher
Previous
Node.js sandboxes are open to prototype pollution
Malware and Vulnerabilities
Next
CoinMarketCap: No Breach Despite 3.1M Email Address Lea ...
Breaches and Incidents