Malicious npm Packages Mimicking ‘noblox.js’ Compromise Roblox Developers’ Systems
A sustained campaign aimed at compromising devices using fake npm packages is aimed at Roblox developers, highlighting the ongoing practice of threat actors taking advantage of the confidence placed in the open-source ecosystem to distribute malware.
According to a technical analysis by Checkmarx researcher Yehuda Gelb, attackers have released dozens of packages that are intended to steal confidential information and corrupt systems by imitating the well-known 'noblox.js' library.
ReversingLabs originally reported on the campaign's details in August 2023. At the time, the campaign was delivering a stealer known as Luna Token Grabber, which the company said was a rerun of an assault that had been discovered two years prior in October 2021 read more about Malicious npm Packages Mimick...

