Incident tracker · 15 Mar 2022

Are you exposed to the node-ipc protestware / wiper (March 2022)?

Maintainer Brandon Nozaki Miller shipped versions that overwrite filesystem contents with heart emoji on machines geolocating to Russia or Belarus.

Confirmed-compromised packages1 package
npm
node-ipccompromised: 10.1.1, 10.1.2
Advisory / post-mortem ↗
Check your repo

CodeTrawl matches your repo’s declared dependencies against this list. Analyze a repo, then open its Security tab — an exposure to this incident shows as a dated, cited finding. Matching is manifest-scoped: it catches a compromised name@version you still declare.

Analyze a repo