Malware Package

Package Type
NPM Module
Name
node-hide-console-windows
Versions
1.5.7, 1.5.6, 1.5.4, 1.4.4, 1.3.4, 1.2.4, 1.2.3, 1.2.2, 1.1.2, 1.1.0
Description
One “s” is all that separates a legitimate npm package from a malicious twin that delivered the r77 rootkit, and was downloaded more than 700 times, ReversingLabs researchers discovered.

Identified Reports (2)

This malware package was identified on the following reports.

Report URL Published At Author Description
Rogue npm Package Deploys Open-Source Rootkit in New Supply Chain Attack https://thehackernews.com/2023/10/rogue-npm-package-deploys-open-source.html Oct 04, 2023THN ⚠️ Watch out, developers! A rogue rootkit named r77 has been found in a deceptive npm package. This is the first-ever case of a package delivering a r
Typosquatting campaign delivers r77 rootkit via npm https://www.reversinglabs.com/blog/r77-rootkit-typosquatting-npm-threat-research Lucija Valentić One “s” is all that separates a legitimate npm package from a malicious twin that delivered the r77 rootkit, and was downloaded more than 700 times, ReversingLabs researchers discovered.
Report External URL Published At Author Description