📌 New from the Socket Research Team: A malicious npm package disguised as an #Advcash integration triggers a reverse shell during payment success. Unlike many malicious packages that execute code during installation, this payload is delayed until runtime.
https://socket.dev/blog/npm-package-advcash-integration-triggers-reverse-shell #JavaScript