24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages
Cybersecurity researchers have disclosed details of a new campaign that uses a cluster of 24 npm packages as free phishing infrastructure for redirecting to ClickFixstyle fake CAPTCHA pages While the malware is simply a single HTML page inside the npm package and while downloading it wouldnt do harm the threat actors use of npm isnt to infect developers who install it but to use the