Social engineering campaign targeting tech employees spreading through npm malware
The Lazarus Group launched a sophisticated social engineering campaign targeting developers in the cryptocurrency and cybersecurity sectors, using compromised accounts and malware-laden NPM packages.
Source: socket.dev