National Cyber Warfare Foundation (NCWF)

175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign


0 user ratings
2025-10-10 11:18:56
milo
Blue Team (CND)
Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign.
The packages have been collectively downloaded 26,000 times, acting as an infrastructure for a widespread phishing campaign codenamed Beamglea targeting more than 135 industrial, technology, and energy



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/10/175-malicious-npm-packages-with-26000.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.