Back to all news
Security

Hackers abuse npm mirrors to host phishing redirect pages

BleepingComputer·August 25, 2026·1 min read
Hackers abuse npm mirrors to host phishing redirect pages

Threat actors are abusing npm and its mirrors to host malicious HTML pages that impersonate Cloudflare CAPTCHAs. These pages redirect visitors to attacker-controlled websites. The attack leverages trusted package registries to distribute phishing content, posing a risk to developers and users who encounter these fake CAPTCHA pages during their workflow.

Read at BleepingComputer
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store