A Deep Dive into 70 Layers of Obfuscated Info-Stealer Malware
medium.com
medium.com
This ad sucks.
It scans for 40+ attributes such as num funcs/files, spawning of shell, use of SSH keys, network communication, use of decode+eval, etc. to flag risky packages. Packj Github action [2] can alert if a risky dependency is pulled into your build.
1. https://github.com/ossillate-inc/packj 2. https://github.com/ossillate-inc/packj-github-action