Social engineering campaign targeting tech employees spreading through npm malware
The Lazarus Group launched a sophisticated social engineering campaign targeting developers in the cryptocurrency and cybersecurity sectors, using compromised accounts and malware-laden NPM packages.
North Korea North Korean Lazarus Group Infrastructure Security Agency Traditional Software Composition Analysis Execution Of Malicious Software
Source: socket.dev