Code obfuscation in open source packages is not inherently malicious. JFrog Security Research analyzed obfuscated packages across npm and PyPI ecosystems, finding that most are legitimate attempts to protect intellectual property. However, obfuscation remains a common technique in supply chain attacks like Shai-Hulud. The
Table of contents
ObfuscationMalicious or NOT?What Should You Expect From Malware Detection Solutions?ConclusionInfo-stealersC2 AgentsSort: