Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    This app immediately blocks sensitive information from your MAC screenshot.

    August 5, 2025

    Rainmware attacks: danger of developing US financial institutions

    August 5, 2025

    Link Rebound 4% as Chenlink Roll Out Data Stream for US Equity and ETF

    August 5, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Pretier-selint NPM package kidnapped in a sophisticated supply chain attack
    Security

    Pretier-selint NPM package kidnapped in a sophisticated supply chain attack

    PineapplesUpdateBy PineapplesUpdateJuly 22, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Pretier-selint NPM package kidnapped in a sophisticated supply chain attack
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Pretier-selint NPM package kidnapped in a sophisticated supply chain attack

    To integrate the preetier with the popular configuration package eSlint, the code formating equipment widely used within the JavaScript and Typescript projects, was kidnapped after becoming victims of a maintenance scheme.

    According to a socket observation, packages such as ESLINT-CONFIG-Pripeteer and Eslint-Plugin-Prigin-screws were compromised for hours after the open-source chain security firm reported the NPM fishing campaign. Typosquatted npnjs.com domain,

    The socket blog post reported, “The attacker published malicious versions with any kind of committees or PRS.

    The socket stated that the attackers had published four new versions of the Eslint-Config-Prettier by the time of detection.

    Fish for NPM token backdoor planting

    The incident began with an email sent on 17 July, with NPM support and look-alik domain joining NPNJS.com. Unknown, the sequential entered his credibility, removing his NPM token.

    The attackers used the tokens with malicious versions with a 10.1.7 of the Eslint-Config-Prettier of 8.10.1,9.1.1.1.10.1.6, and 10.1.7, along with 10.1.7 of the Eslint-Config-Prettier, as well as Eslint-Plugin-Prettier, Syncit, Syncit,@PKGR/Core, and Updated poison to Napi-Tostall.

    “Registration email and vertebrates are easily accessible to the package of metadata NPM, who scratches actors to make a target list of package maintainers,” Socket Team SaidThe malicious versions targeted the Windows machines by targeting an install-script malware by loading a malicious node-gyp.dll.

    Prettier and eslint integration are widely used with popular devices such as redabots and are automatically raised the “latest” versions of packages. According to the socket, CI/CD pipelines and many developers may have already unknown editions established.

    Automatic Github Alarm triggers a quick response

    Once updated, the general committed-based alert of Github and raised Red flags in the registry log. Vertebrae Dismissed The compromised tokens promoted malicious release, and collaborated with NPM to remove them.

    The socket stated that the attack is a textbook example of the “Multi-Stage Supply Chain Agreement”, which includes kettinger credentials in harvesting, publishing malicious versions on NPMs and potentially infect thousands of projects.

    He said, “There is a possibility of rolling in more reports of compromised credentials as the attackers target other maintenance, scrapping NPM metadata and which has so far proved to be a very concrete automatic fishing campaign,” he said.

    Developers are recommended to restore lockfiles, clear cash, clean versions, pin specific package versions and enable two-factor authentication on NPM accounts.

    The default package manager for NPM, JavaScript Runtime Node.JS has increased misuse in recent times, due to its access and popularity. Last month, the socket saw two malicious NPM packages, which were able to erase production systems with single request. Earlier, a score of NPM packages was caught on Dev machines in addition to a clever campaign, which dropped the typo-scvat package with steeler and RCE code.

    Attack chain kidnapped NPM package Pretierselint sophisticated supply
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleWant to turn your MacBook into a weight scale? Neither me, but an app that gives this capacity to trackpad looks impressively
    Next Article Still awakens the deep developer, the Chinese room reinforces its freedom
    PineapplesUpdate
    • Website

    Related Posts

    Security

    Rainmware attacks: danger of developing US financial institutions

    August 5, 2025
    Security

    Anthropic AI wants to stop the model from evil – how is here

    August 4, 2025
    Security

    Fashion giant channel hit salesforce data theft attacks

    August 4, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    This app immediately blocks sensitive information from your MAC screenshot.

    August 5, 2025

    Rainmware attacks: danger of developing US financial institutions

    August 5, 2025

    Link Rebound 4% as Chenlink Roll Out Data Stream for US Equity and ETF

    August 5, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.