URL has been copied successfully!
175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign

Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign.The packages have been collectively downloaded 26,000 times, acting as an infrastructure for a widespread phishing campaign codenamed Beamglea targeting more than 135 industrial, technology, and energy

First seen on thehackernews.com

Jump to article: thehackernews.com/2025/10/175-malicious-npm-packages-with-26000.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link