National Cyber Warfare Foundation (NCWF)

North Korean Hackers Flood npm Registry with XORIndex Malware in Ongoing Attack Campaign


0 user ratings
2025-07-15 08:16:56
milo
Attacks
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing another set of 67 malicious packages to the npm registry, underscoring ongoing attempts to poison the open-source ecosystem via software supply chain attacks.
The packages, per Socket, have attracted more than 17,000 downloads, and incorporate a previously undocumented version of a malware



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/07/north-korean-hackers-flood-npm-registry.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Attacks



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.