North Korean hackers release malware-rided packages in the NPM registry database


  • Security researchers discovered 67 malicious packages on NPM
  • The packages are part of the contagious interview campaign
  • They are probably deployed by North Korean attackers

North Korean hackers have been seen pushing dozens of malicious packages to NPM in an attempt to compromise Western technology products through supply chain attacks.

CyberSecurity Researchers Socket claims that the latest push of 67 malicious packages is only the second stage of a previous attack in which 35 packages were published, as part of a campaign called SMITious interview.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top