CyberNotableSingle-sourceDeveloping
5.5
Threat actors exploit npm registry mirrors for phishing campaigns
BleepingComputer·2 days ago
Threat actors are distributing 24 npm packages that leverage the unpkg CDN to host fraudulent Cloudflare CAPTCHA pages. By embedding attacker-controlled redirect logic, these packages target end-users rather than developers, marking a shift in supply chain abuse tactics. The extent of the compromise and the total number of affected end-users remain unquantified.