❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

β€˜cors-parser’ npm package hides cross-platform backdoor in PNG files

By: Ax Sharma
11 June 2024 at 11:00

'cors-parser' is neither a cure for Cross-Origin Resource Sharing (CORS) vulnerabilities nor a "parser" for interpreting same-origin policies of a website. Instead, the npm package employs a form of steganography to download what may appear to be PNG images at first. These "images," however, contain encoded instructions to drop malware β€” a backdoor on target systems.

The post β€˜cors-parser’ npm package hides cross-platform backdoor in PNG files appeared first on Security Boulevard.

❌
❌