North Korean Hackers Attacking Windows Users With Weaponized npm Files
Scalable package scanning within PyPi and npm using GuardDog software identified two malicious packages linked to a DPRK-aligned threat actor cluster dubbed “Stressed Pungsan.” The cluster strongly aligns with Microsoft’s MOONSTONE SLEET, indicating a sophisticated supply chain attack vector. The packages are initial access points for malware distribution, enabling data exfiltration, credential theft, and lateral […]
The post North Korean Hackers Attacking Windows Users With Weaponized npm Files appeared first on Cyber Security News.