URL has been copied successfully!
Over 67,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

Over 67,000 Fake npm Packages Flood Registry in Worm-Like Spam Attack

Cybersecurity researchers are calling attention to a large-scale spam campaign that has flooded the npm registry with thousands of fake packages since early 2024 as part of a likely financially motivated effort.”The packages were systematically published over an extended period, flooding the npm registry with junk packages that survived in the ecosystem for almost two years,” Endor Labs

First seen on thehackernews.com

Jump to article: thehackernews.com/2025/11/over-46000-fake-npm-packages-flood.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link