Threat Research
Inside the npm Campaign That Mapped Russian Banks' Internal Frontend Namespaces
Centriole Research·
A two-wave dependency confusion operation published 39 npm packages impersonating Raiffeisen, Tinkoff, and other Russian fintech internal modules, dropping a binary stage-2 loader on require().



















