News

North Korean threat actors planted 67 malicious packages in the Node Package Manager (npm) online repository to deliver a new ...
Socket has identified a new malware loader called XORIndex incorporated into malicious packages published to the npm registry ...
North Korean hackers continue attacking open-source software via npm packages. 67 new malicious packages with XORIndex Loader ...
Uploading malicious code to npm is just a setup. The real attack most likely happens elsewhere - on LinkedIn, Telegram, or Discord. North Korean attackers would pose as recruiters, or HR managers in ...
The federal government has sanctioned alleged North Korean hacker Song Kum Hyok for illegal activities related to his ...
US Department of Justice uncovers North Korean IT workers using false identities to infiltrate American companies, including ...
The IT worker scheme, also tracked as Nickel Tapestry, Wagemole, and UNC5267, involves North Korean actors using a mix of ...
Researchers warn that recent attack campaigns against Web3 and crypto startups by a North Korean APT group have leveraged a ...
The US Treasury has sanctioned four Russian entities and two alleged facilitators of a North Korean IT worker ring that ...
Since 2024, Microsoft Threat Intelligence has observed remote IT workers deployed by North Korea leveraging AI to improve the ...
Song Kum Hyok is accused of masterminding a scheme in which North Korean cyber operatives posed as U.S. remote IT workers for ...
North Korean hackers are using Nim-compiled malware called “NimDoor” to target crypto companies on macOS, exploiting fake ...