ThreatCluster

New npm Malware Campaign Targets Users Based on Visitor Type

First seen 2 Dec 2025, 18:33 UTC GbhackersCybersecuritynews 15

Article Content

Browse articles
ThreatCluster

A new malware campaign targeting npm users has been identified, which determines if a visitor is a potential victim or a researcher before initiating an infection. This sophisticated approach aims to evade detection and maximize the effectiveness of the malware. Users of npm, a popular package manager for JavaScript, are particularly at risk from this campaign.