• Rimu@piefed.social
    link
    fedilink
    English
    arrow-up
    99
    arrow-down
    1
    ·
    edit-2
    13 hours ago

    If you installed or updated Claude Code via npm on March 31, 2026, between 00:21 and 03:29 UTC, you may have inadvertently pulled in a malicious version of axios (1.14.1 or 0.30.4) that contains a Remote Access Trojan (RAT). You should immediately search your project lockfiles (package-lock.json, yarn.lock, or bun.lockb) for these specific versions or the dependency plain-crypto-js. If found, treat the host machine as fully compromised, rotate all secrets, and perform a clean OS reinstallation.

    Lol 😂

    • DacoTaco@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      4 hours ago

      Its bad advise too, because the malware removed itself from those files to removed traces of itself

    • mermella@piefed.social
      link
      fedilink
      English
      arrow-up
      11
      ·
      9 hours ago

      This is because if an unrelated hack on npm’s latest build. Anyone with this version of npm is affected