
UAParser.js – Attack & Preparations
A few days ago, CISA published an alert regarding malicious code discovered in an NPM package with close to 8 million weekly downloads, ”ua-parser-js”. A few days before, security researchers from Sonatype published a blog post reporting 3 malicious NPM package. A few connecting lines between these two incidents seems to suggest they are related. Looking