Post

Conversation

[0] A client sent me a react app to make changes to the web application and they fucking had a malware injected in a npm start command . The setupTest was obfuscated, carefully examining the variables , i figured out it was uploading chrome browser's data to a remote server.
Image