Y
Hacker News
new
|
ask
|
show
|
jobs
Malicious Bun Script Found in NPM Package Bumps
5 points
by
kothariji
213 days ago
*`package.json` includes a `preinstall` script running `node setup_bun.js`, along with `setup_bun.js` and `bun_environment.js` files that appear to contain the malware.*
1 comments
abby1212
213 days ago
For more info -
https://www.wiz.io/blog/shai-hulud-2-0-ongoing-supply-chain-...
link