National Cyber Warfare Foundation (NCWF)

Over 67,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack


0 user ratings
2025-11-13 07:07:08
milo
Attacks
Cybersecurity researchers are calling attention to a large-scale spam campaign that has flooded the npm registry with thousands of fake packages since early 2024 as part of a likely financially motivated effort.
"The packages were systematically published over an extended period, flooding the npm registry with junk packages that survived in the ecosystem for almost two years," Endor Labs



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/11/over-46000-fake-npm-packages-flood.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Attacks



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.