Malicious Koishi Chatbot Plugin Exfiltrates Messages Triggered by 8-Character Hex Strings
2025. 05. 20.
OSINT 협회
OSINT 정보
Malicious Koishi Chatbot Plugin Exfiltrates Messages Triggered by 8-Character Hex Strings
Socket’s Threat Research Team uncovered a malicious npm package, koishi-plugin-pinhaofa, that exfiltrates messages from Koishi chatbots using 8-character hex strings, potentially leaking sensitive data to a hardcoded QQ account
게시일: 2025. 05. 20.
출처: OSINT 협회 Facebook