CyberMaterial

CyberMaterial

Alerts

Malicious Npm Package Mimics Nodemailer

CyberMaterial's avatar
CyberMaterial
Sep 04, 2025
∙ Paid

Cybersecurity researchers recently unearthed a deceptive npm package, nodejs-smtp, that poses as the well-known email library nodemailer. The malicious package, uploaded by a user named “nikotimon,” …

User's avatar

Continue reading this post for free, courtesy of CyberMaterial.

Or purchase a paid subscription.
© 2026 CyberMaterial · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture