Arctic Wolf assesses with high confidence that threat actors will continue targeting this vulnerability due to a PoC exploit being made available publicly, which lowers the barrier to exploitation.
The packages contain obfuscated JavaScript that's executed during (or post) the installation process, ultimately leading to the retrieval of a next-stage binary from a remote server based on the ...