North Korean group compromises multiple npm packages
A North Korean hacking group conducted a multi-year campaign compromising several widely used open-source software libraries, according to research from Amazon. The campaign, which began in March 2025, targeted the JavaScript packages typocrypto, debug, chalk, and axios through social engineering of trusted maintainers...
Verilumia