News

North Korean threat actors planted 67 malicious packages in the Node Package Manager (npm) online repository to deliver a new ...
Socket has identified a new malware loader called XORIndex incorporated into malicious packages published to the npm registry ...
Uploading malicious code to npm is just a setup. The real attack most likely happens elsewhere - on LinkedIn, Telegram, or ...
North Korean hackers continue attacking open-source software via npm packages. 67 new malicious packages with XORIndex Loader ...
North Korean officials accused the US Department of Justice (DOJ) of running “an absurd smear campaign” after announcing that ...
Federal authorities uncover North Korean schemes using remote IT workers with false identities to defraud U.S. companies, ...
The federal government has sanctioned alleged North Korean hacker Song Kum Hyok for illegal activities related to his ...
Keith Shaw: The North Korean IT job scandal has shaken a lot of companies’ hiring practices to the core—exposing poor processes and revealing serious data security vulnerabilities.
A threat actor group with ties to the Democratic People’s Republic of Korea (“North Korea”) called Contagious Interview is using front companies to spread malware through fake job interviews ...
Workers used stolen or fake U.S. identities to secure employment, funneling millions of dollars to the North Korean ...
Since 2024, Microsoft Threat Intelligence has observed remote IT workers deployed by North Korea leveraging AI to improve the ...
Nine people have been indicted in Boston in connection with an alleged scheme to generate revenue for North Korea and its ...