Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
Malicious Bun Script Found in NPM Package Bumps | Better HN
Malicious Bun Script Found in NPM Package Bumps
5 points
kothariji
4mo ago
1 comments
Share
*`package.json` includes a `preinstall` script running `node setup_bun.js`, along with `setup_bun.js` and `bun_environment.js` files that appear to contain the malware.*
1 comments
default
newest
oldest
abby1212
4mo ago
For more info -
https://www.wiz.io/blog/shai-hulud-2-0-ongoing-supply-chain-...
j
/
k
navigate · click thread line to collapse