Skip to content

Instantly share code, notes, and snippets.

View alexgreenland's full-sized avatar

Alex Greenland alexgreenland

View GitHub Profile
@alexgreenland
alexgreenland / README.md
Last active March 31, 2026 17:53
[Updated 31 Mar 2026] Digital Forensics & Incident Response (DFIR) for Axios NPM library compromise, Mar 2026

Digital Forensics & Incident Response (DFIR) for Axios library compromise, Mar 2026

Script to deep scan a batch of Node projects for known bad NPM packages, as listed in bad-deps.txt.

Fully checking each project found in your workspace (SEARCH_DIRS) or those declared in PROJECTS, we look for bad packages nested anywhere in the dependency tree, including node_modules and package-lock.json.

@alexgreenland
alexgreenland / bad-deps.txt
Last active December 16, 2025 18:18
[Updated 27 Nov 2025 00:21 UTC] Deep scan for bad NPM packages nested across projects - DFIR for Shai-Hulud cyberattack, Sep-Nov 2025
@ahmedhfarag/ngx-perfect-scrollbar
@ahmedhfarag/ngx-virtual-scroller
another-shai
@art-ws/common
@art-ws/config-eslint
@art-ws/config-ts
@art-ws/db-context
@art-ws/di-node
@art-ws/di
@art-ws/eslint