Compromising the open-source supply chain is easy to do and spreads more quickly than traditional supply-chain attacks, ...
Des pirates nord-coréens seraient à l’origine des compromissions des paquets npm typo-crypto, debug, chalk et axios, selon ...
AWS Links Npm Attacks To North Korean Hackers Arabian Post. clearfix>Amazon Web Services has attributed a series of compromises involving widely used npm software packages, including Axios, Debug and ...
米Amazonの脅威調査チームは、Node Package Manager(npm)ライブラリの4つの異なる改ざんについて、北朝鮮政府が支援する脅威アクターによるものだと高い確信を持って断定した。
Если злоумышленники удачно подменят популярную библиотеку, они могут открыть путь сразу в тысячи корпоративных систем. Судя по новым данным Amazon, северокорейские хакеры давно применяют такую схему в ...
The cloud computing giant said in a blog post on July 29 that compromises of the axios, debug, chalk and typo-crypto libraries were carried out by the same group, known as Saphire Sleet, BlueNoroff ...
New findings connect the same Pyongyang-backed group to four compromises dating to 2025, revealing a larger operation than ...
Amazon threat researchers found one threat actor behind four distinct open source compromises, including the March 2026 ...
8hon MSN
Amazon flags North Korean hacker group as being behind the surge in open source supply chain attacks
North Korean hackers quietly poisoned trusted software packages ...
A DPRK-linked threat actor has been tied to four separate compromises of widely used JavaScript libraries since March 2025, ...
Volgens het beveiligingsonderzoek van Amazon werden de aanvallen uitgevoerd door de hackersgroep die in de cybersecuritywereld bekendstaat onder namen als SAPPHIRE SLEET, STARDUST CHOLLIMA, BlueNoroff ...
Security researchers at Kaspersky have uncovered technical evidence linking the massive supply chain attack on the popular ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results