⤷ Title: Destructive npm Packages Disguised as Utilities Trigger Remote System Wipes on Demand
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 00:27:46 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #cybersecurity #data wiping #Developer Tools #express_api_sync #malware #npm #Socket Security #supply chain attack #system_health_sync_api
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 00:27:46 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #cybersecurity #data wiping #Developer Tools #express_api_sync #malware #npm #Socket Security #supply chain attack #system_health_sync_api
Daily CyberSecurity
Destructive npm Packages Disguised as Utilities Trigger Remote System Wipes on Demand
Two malicious npm packages, express-api-sync and system-health-sync-api, act as remote-controlled time bombs, wiping entire directories with a single POST request.