JsDelivr is a tool tracked by ThreatCluster, appearing in 2 threat clusters built from 2 intelligence report mentions.
JsDelivr is a tool tracked across 2 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed January 23, 2026; most recent activity July 14, 2026.
A campaign involving 148 malicious npm packages, branded as student proxy tools, has been uncovered. These packages were designed to lure students into bypassing school web filters but instead turned their browsers into…
A new phishing campaign has emerged, utilizing malicious npm packages to target employees in industrial, energy, and healthcare sectors across Europe, the Middle East, and the United States. Attackers have published…
JsDelivr is a tool tracked by ThreatCluster, appearing in 2 threat clusters built from 2 intelligence report mentions.
The most recent intelligence report mentioning JsDelivr on ThreatCluster is dated July 14, 2026. Activity was first observed January 23, 2026, giving a tracked span from then to July 14, 2026.
Across ThreatCluster reporting, JsDelivr most frequently co-occurs with Botnet, DDoS, Malware, Phishing, Amixon, among 12 tracked related entities.
The most significant recent cluster is “148 Malicious npm Packages Convert Browsers into DDoS Botnet” (4 articles · Updated July 14, 2026). JsDelivr appears across 2 threat clusters in total, listed above with sources.
JsDelivr appears in 2 intelligence report mentions across 2 deduplicated threat clusters, aggregated from 17,000+ monitored sources.