Skip to content
TrackPodcasts
technologyNov 3, 202019:59pending

Installing This Twilio Malware NPM Package Opens a Backdoor on Your Developer Machine

About this episode

SonaType detected a Malware in NPM registry imitating to be Twilio package that opens a reverse connection to a remote server and allows attacker to access your local machine content. Let us discuss

Since this command is unix specific it won’t work on Windows

https://blog.sonatype.com/twilio-npm-is-brandjacking-malware-in-disguise



Resources

SSH Tunneling https://youtu.be/N8f5zv9UUMI

Ngrok https://www.youtube.com/watch?v=pR2qNnVIuKE


Get every episode summarized

Each time The Backend Engineering Show with Hussein Nasser publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.

Email me new episodes

Free for 3 shows. No card needed.

Hosts & guests

No transcript yet

This episode has not been transcribed. Request it and it moves to the front of the queue.

Installing This Twilio Malware NPM Package Opens a Backdoor on Your Developer Machine

The Backend Engineering Show with Hussein Nasser

0:00
19:59

More episodes

More from The Backend Engineering Show with Hussein Nasser

View all episodes →