News

North Korean threat actors escalated their software supply chain attacks by uploading 67 new malicious packages to the npm ...
North Korean threat actors planted 67 malicious packages in the Node Package Manager (npm) online repository to deliver a new ...
Uploading malicious code to npm is just a setup. The real attack most likely happens elsewhere - on LinkedIn, Telegram, or ...
North Korean hackers continue attacking open-source software via npm packages. 67 new malicious packages with XORIndex Loader ...
Socket has identified a new malware loader called XORIndex incorporated into malicious packages published to the npm registry ...
North Korean officials accused the US Department of Justice (DOJ) of running “an absurd smear campaign” after announcing that ...
Federal authorities uncover North Korean schemes using remote IT workers with false identities to defraud U.S. companies, ...
The federal government has sanctioned alleged North Korean hacker Song Kum Hyok for illegal activities related to his ...
Keith Shaw: The North Korean IT job scandal has shaken a lot of companies’ hiring practices to the core—exposing poor processes and revealing serious data security vulnerabilities.
The Treasury also cited a recent United Nations report that found North Korean state-sponsored cyber actors stole more digital currency in 2022 than in previous years, with estimates ranging from ...
Since 2024, Microsoft Threat Intelligence has observed remote IT workers deployed by North Korea leveraging AI to improve the ...
Workers used stolen or fake U.S. identities to secure employment, funneling millions of dollars to the North Korean ...