Snyk has a published code exploit for this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsAvoid using all malicious instances of the libari
package.
libari is a malicious package.
The package contains malicious code which will download a file from a C2 domain, save it as a hidden file named .drv
in the user’s home directory, and persist itself inside a system's .bashrc
file to be run as a background process whenever an interactive non-login shell is created.