Malicious NPM Packages Disguised With 'Invisible' Dependencies
The 'PhantomRaven' campaign has seen the release of 126 malicious npm packages that have evaded detection, resulting in 86,000 downloads. This highlights a significant security threat within the npm ecosystem due to the use of disguised dependencies.