Developer Tech
Read post

Masquerading payment npm package installs backdoor

Cybersecurity researchers at Socket have discovered a malicious npm package, @naderabdi/merchant-advcash, that hijacks server control during payment transactions. The package, designed to look like a legitimate integration for the Advcash payment platform, activates a reverse shell upon successful payment, allowing attackers to remotely control systems. The sophistication of the module, including its delayed activation and minimal footprint, helps it evade static analysis tools. Developers are reminded to be cautious and not blindly trust external packages.

    #cyber#fintech#javascript#malware#npm
Apr 15, 2025•2m read time•From developer-tech.com
Post cover image
43 Impressions
Developer Tech's image
Developer Tech

DeveloperTech offers insights into technology news, industry trends, and developer tools, providing ...

310 Followers

•

338 Upvotes

gadget_ry's user avatar
Ryan Daws
@gadget_ry
Joined Jan 10. 2022
310

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard