North Korean-linked campaign publishes 26 malicious npm packages hiding C2 in Pastebin, deploying credential stealers & RAT ...
A online demo is available at pasteburn.onrender.com. Note that the demo is very unstable and should not be used for purposes other than demonstration. Paste something into pasteburn with a password.
I do a bunch of open source and want to make it easier to maintain so many projects. This is a CLI and exposes a bin called kcd-scripts. I don't really plan on documenting or testing it super duper ...