North Korean Hackers Flood npm Registry with XORIndex Malware in Ongoing Attack Campaign

The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing another set of 67 malicious packages to the npm registry, underscoring ongoing attempts to poison the open-source ecosystem via software supply chain attacks.
The packages, per Socket, have attracted more than 17,000 downloads, and incorporate a previously undocumented version of a malware

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

The Unusual Suspect: Git Repos

Next Post

AsyncRAT’s Open-Source Code Sparks Surge in Dangerous Malware Variants Across the Globe

Related Posts
Total
0
Share