AI
AI

Linux and macOS Users Targeted by Malware Disguised as Authentic Go Packages

Photo credit: www.csoonline.com

Typosquatting is a method employed by cybercriminals to create deceptive websites, domains, or software packages that closely imitate legitimate ones. By taking advantage of common typing mistakes or minor discrepancies in spelling, these attackers are able to mislead users into downloading malware, disclosing sensitive personal information, or inadvertently installing harmful software.

In light of recent findings, a request has been made to eliminate the aforementioned malicious packages from the Go Module Mirror. Additionally, efforts are underway to flag the related GitHub repositories and user accounts associated with these threats.

Typosquatting of Hypert: Layout for RCE and More

The investigation revealed that attackers have created counterfeit versions of the widely used “hypert” library, which is essential for developers testing HTTP API clients. Four fraudulent releases were identified, all containing embedded functions designed for remote code execution. These typosquatting clones include the following versions: github.com/shallowmulti/hypert, github.com/shadowybulk/hypert, github.com/belatedplanet/hypert, and github.com/thankfulmai/hypert.

One notable package, “—–shallowmulti/hypert,” was particularly malicious. It executed shell commands aimed at downloading and running a harmful script from a domain variation (alturastreet[.]icu) that closely resembles the legitimate banking website alturacu.com.

Source
www.csoonline.com

Related by category

Google Warns of Increasing Enterprise-Specific Zero-Day Exploits

Photo credit: www.csoonline.com The Evolving Landscape of Mobile Security Vulnerabilities Recent...

Cybersecurity Leaders Condemn ‘Political Persecution’ of Chris Krebs in Letter to the President

Photo credit: www.csoonline.com In November 2018, President Trump appointed Chris...

Broadcom-Supported SAN Devices Vulnerable to Code Injection Attacks Due to Critical Fabric OS Flaw

Photo credit: www.csoonline.com Critical Vulnerability Found in Broadcom’s Brocade Fabric...

Latest news

NASA Reaches New Heights in the First 100 Days of the Trump Administration

Photo credit: www.nasa.gov Today marks the 100th day of the...

CBS Evening News Plus: April 29 Edition

Photo credit: www.cbsnews.com Understanding Trump's Auto Tariff Modifications Recent shifts in...

Carême Review – A Sizzling French Adventure Featuring a Chef That’s Too Hot to Handle | Television & Radio

Photo credit: www.theguardian.com Exploring "Carême": A Culinary Journey Through the...

Breaking news