Malicious NPM Packages Utilize Adspect for Cryptocurrency Scams

Malicious NPM Packages Utilize Adspect for Cryptocurrency Scams

First seen 18 Nov 2025, 03:12 UTC Bleepingcomputer 100% similarity 22.3

Article Content

Browse articles
ThreatCluster

Seven malicious packages were published on the Node Package Manager (npm) registry, using the Adspect service to redirect users to cryptocurrency scam sites. These packages were uploaded by a developer under the name 'dino_reborn' between September and November 2025, targeting unsuspecting victims while evading detection by security researchers.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story