Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
undefined | Better HN
0 points
littlecranky67
7mo ago
0 comments
Share
Says the malware is in a post-install script - that will not be called by nx, but i.e after an npm install
0 comments
default
newest
oldest
reactordev
7mo ago
Consider anything pre or post attached to the package as tainting the package.
SoftTalker
7mo ago
Consider your entire system tainted, nothing is trustworthy at this point. Wipe and rebuild from known good media.
littlecranky67
OP
7mo ago
The malware is "luckily" written in javascript and such quite easy to analyse. No manipulation outside of .zshrc or .bashrc and a temp txt file.
1 more reply
dudeinjapan
7mo ago
Oh good. I guess running the actual program was too many steps.
j
/
k
navigate · click thread line to collapse