Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j8qr-rvcv-crhv

Опубликовано: 11 сент. 2020
Источник: github
Github: Прошло ревью

Описание

Malicious Package in electron-native-notify

All versions of electron-native-notify contain malicious code. The package was part of a targeted attack to steal cryptocurrency wallet seeds and upload them to a remote server, effectively giving attackers access to users wallets.

Recommendation

Remove the package from your environment and follow the recommendations by Komodo

Пакеты

Наименование

electron-native-notify

npm
Затронутые версииВерсия исправления

Отсутствует