Malicious npm Package Poses as Twilio Bug-Bounty Probe, Can Exfiltrate Credentials
Cybersecurity researchers have recently uncovered a clever new trap targeting software developers, where a malicious package was uploaded to the popular npm code repository disguised as a legitimate security testing tool for Twilio. Instead of helping find bugs, this harmful software is designed to…
Read more →