Hello, I found the active malware repository for few months.
A person, under the guise of asking for help with development, requests to run a project on a computer that contains obfuscated malicious code.
There is an obfuscated js script at the end of the file, hiding in the right bottom corner.
https://bitbucket.org/ritechdev/metaverse-backend/src/main/app/middleware/verifySignUp.js
It's exactly the same attack:
https://github.com/0x50D4/0x50d4.github.io/blob/main/_posts/2024-04-03-python-malware.md
Please take action.
Hey @Ivan Novikov ,
Thank you very much for reporting the malicious content on that repository.
We have taken down that repository as it violates Atlassian terms of service.
Again, we really appreciate your time on reporting this to us and helping to make our platform more secure.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.