tomabai's comments

tomabai | 1 year ago | on: Fake VS Code Extension on NPM Spreads Multi-Stage Malware

We discover a fake vscode extension that serves a multi-stage malware on npm, Inc.

The package uses javascript obfuscation for downloading the first stage of the malware, than it uses a heavily obfuscated batch file to conntinue into the second phase.

Lastly it leverages preconfigured ScreenConnect remote desktop installer to communicate with the compromised machine.

tomabai | 1 year ago | on: A new platform for learning LLM's risks

Hi guys, I'd like to introduce my new learning platform - LLM Security Labs.

This hands-on platform focused on the owasp top 10 for llm risks, where each risk has it own's lab in order to understand each risk with practical challenges, instead of just reading articles.

Hope you will enjoy that, would appreciate your feedback

page 1