CyberMaterial

CyberMaterial

Alerts

Npm Packages Compromised In Attack

CyberMaterial's avatar
CyberMaterial
Sep 09, 2025
∙ Paid

A sophisticated phishing email, disguised as an official npm support message, tricked a maintainer into providing his credentials and a two-factor authentication (2FA) token on a fake login page. Thi…

User's avatar

Continue reading this post for free, courtesy of CyberMaterial.

Or purchase a paid subscription.
© 2026 CyberMaterial · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture