Malicious 󠅮󠅰󠅭Package Affecting 1337qq-js package, versions >=0.0.0
Threat Intelligence
Exploit Maturity
Mature
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-JS-1337QQJS-541596
- published 14 Jan 2020
- disclosed 13 Jan 2020
- credit Microsoft Vulnerability Research
How to fix?
Avoid using all malicious instances of the 1337qq-js
package.
Overview
1337qq-js is a malicious package.
All versions of 1337qq-js
contain malicious code. The package exfiltrates sensitive information through install scripts. It targets UNIX systems. The information exfiltrated includes:
- Environment variables
- Running processes
/etc/hosts
uname -a
npmrc
file
References
CVSS Scores
version 3.1