-
Notifications
You must be signed in to change notification settings - Fork 37
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
package removed from npm #2
Comments
Yes! This isn't a safe package! You can check it here: |
Thanks, I got the issue when installing @vue/cli. |
see https://github.com/bitpay/copay/issues/9346 and dominictarr/event-stream#116 for information about why this was removed |
use |
I met this issue when using
|
where I can find |
What is the malicious Code exactly? Coulnt find anything... Just out of interest |
@BennyAlex It's incredibly well obfuscated. It's the entire index.min.js file. |
Hey, do you know another package similar to flatmap-stream? Because we are using in a project. |
FYI, my Sophos software caught and removed this trojan when I tried to run my nodejs/express app locally. Phew!!! |
@Art4 data.js is not found |
The code was removed. You can read everything about this malware in this blogpost |
@ktvo68 that was good job for Sophos considering that your app was probably not a copay/copay-dash fork with the same package description. Wonder when did the Sophos catch happen? |
@artemv The |
It seems the package cannot be installed anymore from npm.
When running
npm view flatmap-stream versions --json
, I get:The text was updated successfully, but these errors were encountered: