HN Top New Show Ask Jobs

settings

Theme

Hand Mode

Feed

Malicious Bun Script Found in NPM Package Bumps

4 points by kothariji 12 hours ago

1 comment

View on Hacker News

*`package.json` includes a `preinstall` script running `node setup_bun.js`, along with `setup_bun.js` and `bun_environment.js` files that appear to contain the malware.*

abby1212 10 hours ago

For more info - https://www.wiz.io/blog/shai-hulud-2-0-ongoing-supply-chain-...

Reply View | 0 replies