You can now take advantage of this classic Windows scripting tool even if you have zero programming experience.
An active campaign named 'PhantomRaven' is targeting developers with dozens of malicious npm packages that steal authentication tokens, CI/CD secrets, and GitHub credentials.