OS users are being tricked in the ongoing campaign with fake GitHub pages that deliver the Atomic infostealer.
GitHub, which owns the npm registry for JavaScript packages, says it is tightening security in response to recent attacks.
DPRK used ClickFix to deliver compiled BeaverTail to crypto marketers; Windows build used password-protected archives, ...