news
The Hacker News
November 18th, 2025 at 10:37 AMSeven npm Packages Use Adspect Cloaking to Trick Victims Into Crypto Scam Pages
Cybersecurity researchers have discovered a set of seven npm packages published by a single threat actor that leverages a cloaking service called Adspect to differentiate between real victims and security researchers to ultimately redirect them to sketchy crypto-themed sites. The malicious npm packages, published by a threat actor named "dino_reborn" between September and November 2025, are
#research
Score: 2.76
Engagement proxy: 0
Canonical link: https://thehackernews.com/2025/11/seven-npm-packages-use-adspect-cloaking.html