Malicious npm Package Modifies Local ‘ethers’ Library to Launch Reverse Shell Attacks

Mar 26, 2025

Cybersecurity researchers have discovered two malicious packages on the npm registry that are designed to infect another locally installed package, underscoring the continued evolution of software supply chain attacks targeting the open-source ecosystem.
The packages in question are ethers-provider2 and ethers-providerz, with the former downloaded 73 times to date since it was published on

Get Free Report & Network Analysis

Please check your email for the free report.