New Lazarus Group -Campaign See North Korean Hackers Spread Underpicable Malware Through Github and Open Source packs


  • Security scientists discovered malicious code in NPM packages and GITHUB -OKS
  • The code was attached to a Lazarus-operated account
  • More than 200 victims were confirmed so far

Lazarus Group, a notorious North Korean state-sponsored threat actor, runs a campaign target software and web3 developers with “undetectable” malware.

CyberSecurity scientists at Strike from SecurityScorecard said the observed malware embedded in GitHub stocks and NPM packages where unsuspecting developers pick them up and integrate into their own projects.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top