NPM has made great strides in improving the security of the ecosystem, but despite this, malicious packages like Phylum continue to be published, with the latest discovery of 137 malicious NPM packages on January 29, 2023. The malware payload in the postinstall script gathers system information and sends it to a remote server.
FEATURES
ALTERNATIVES
Online Java decompiler tool with support for modern Java features.
YARA rules for ProcFilter to detect malware and threats
Hyara is a plugin that simplifies writing YARA rules with various convenient features.
A minimal, consistent API for building integrations with malware sandboxes
A collection of XSS payloads designed to turn alert(1) into P1
A strings statistics calculator for YARA rules to aid malware research.
A PowerShell module for interacting with VirusTotal to analyze suspicious files and URLs.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.