programming.dev
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
codeinabox to Next.jsEnglish · 11 hours ago

Developer-targeting campaign using malicious Next.js repositories

www.microsoft.com

external-link
message-square
0
link
fedilink
  • cross-posted to:
  • [email protected]
4
external-link

Developer-targeting campaign using malicious Next.js repositories

www.microsoft.com

codeinabox to Next.jsEnglish · 11 hours ago
message-square
0
link
fedilink
  • cross-posted to:
  • [email protected]
Developer-targeting campaign using malicious Next.js repositories | Microsoft Security Blog
www.microsoft.com
external-link
A developer-targeting campaign leveraged malicious Next.js repositories to trigger a covert RCE-to-C2 chain through standard build workflows. The activity demonstrates how staged command-and-control can hide inside routine development tasks.

cross-posted from: https://lemmy.bestiver.se/post/954231

Comments

alert-triangle
You must log in or # to comment.

Next.js

nextjs

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

A community for discussing and posting things relating to the next.js framework

Looking for mods, if you want to mod the community feel free to dm Ategon

https://nextjs.org/

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 5 users / day
  • 10 users / week
  • 11 users / month
  • 21 users / 6 months
  • 19 local subscribers
  • 101 subscribers
  • 16 Posts
  • 4 Comments
  • Modlog
  • mods:
  • Vacant
  • BE: 0.19.13
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org