Malicious npm Packages Mimicking ‘noblox.js’ Compromise Roblox Developers’ Systems

Sep 2, 2024

Roblox developers are the target of a persistent campaign that seeks to compromise systems through bogus npm packages, once again underscoring how threat actors continue to exploit the trust in the open-source ecosystem to deliver malware.
“By mimicking the popular ‘noblox.js’ library, attackers have published dozens of packages designed to steal sensitive data and compromise systems,” Checkmarx

Get Free Report & Network Analysis

Please check your email for the free report.