TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Groundhog day: NPM package caught stealing browser passwords

2 pointsby OMGWTFalmost 4 years ago

1 comment

theamkalmost 4 years ago
&gt; This detection was assigned to an embedded Windows executable file...<p>I think this should be enough to declare it &quot;malware&quot;, no? Why would one put a Windows (or any other) executable into repository for Javascript packages except to be malicious?