DEV Community

Discussion on: npm package discovered to have bitcoin-stealing backdoor

Collapse
 
theodesp profile image
Theofanis Despoudis • Edited

The real problem here is when you had old packages that include the infected packages.

You have to go an update everything to the latest version, possibly breaking stuff and pray that npm ls event-stream flatmap-stream does not show anything suspicious.

img