Tech

Malicious npm packages use devious backdoors to target users

Share
Share


  • Security researchers from Reversing Labs find two malicious packages on npm
  • These serve as downloaders and target software developers building on the Ethereum blockchain
  • The malware opens a reverse shell and grants attackers access to target computers

Two malicious packages were recently discovered on the npm repository using dubious backdoors to target their users.

Cybersecurity researchers from Reversing Labs discovered two packages WHICH were uploaded to the popular repository in early March 2025 named “ethers-provider2”, and “ethers-providerz” – names carefully chosen to trick victims into thinking they have something to do with a legitimate package called “ethers”.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
ChatGPT is getting smarter, but its hallucinations are spiraling
Tech

ChatGPT is getting smarter, but its hallucinations are spiraling

OpenAI’s latest AI models, GPT o3 and o4-mini, hallucinate significantly more often...

You can now edit images in Gemini directly
Tech

You can now edit images in Gemini directly

Google’s Gemini can now edit both AI-generated and personal images using text...

From action movies to urban planning, new method for creating large 3D models of urban areas is faster and cheaper
Tech

From action movies to urban planning, new method for creating large 3D models of urban areas is faster and cheaper

Ground truth, generated images, and visualization of Gaussian means of our Waterloo...