The npm packages were available since July, have elaborately obfuscated malicious routines, and rely on a fake CAPTCHA to appear authentic.
After installing the update previews from late September or the security updates from October in Windows, some unexpected side effects may occur. Microsoft reports failed authentication with smart ...