Malicious npm Packages Use Adspect Cloaking in Crypto Scam

Malicious npm Packages Use Adspect Cloaking in Crypto Scam

First seen 18 Nov 2025, 18:13 UTC ThreatclusterCryptorankIndustrialcyber.CoBleepingcomputerCybersecuritynews+7 99% similarity 24.3

Article Content

Browse articles
ThreatCluster

A malware campaign has been identified that utilizes malicious npm packages to create fake websites designed to identify and exploit potential victims. The threat actor, known as 'dino_reborn', published these packages between September and November 2025, targeting users in the cryptocurrency space.

ThreatCluster AI

Community

Browse all →