T1027.013 14
- 72 Malicious Open VSX Extensions Linked to GlassWorm Campaign Now Using Transitive Dependencies
- Malicious Go Packages Impersonate Google's UUID Library and Exfiltrate Data
- North Korea's Contagious Interview Campaign Escalates: 338 Malicious npm Packages, 50,000 Downloads
- Contagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware Loader
- Another Wave: North Korean Contagious Interview Campaign Drops 35 New Malicious npm Packages
- Backdooring the IDE: Malicious npm Packages Hijack Cursor Editor on macOS
- Lazarus Expands Malicious npm Campaign: 11 New Packages Add Malware Loaders and Bitbucket Payloads
- Lazarus Strikes npm Again with New Wave of Malicious Packages
- Typosquatted Go Packages Deliver Malware Loader Targeting Linux and macOS Systems
- North Korean APT Lazarus Targets Developers with Malicious npm Package
- Gmail For Exfiltration: Malicious npm Packages Target Solana Private Keys and Drain Victims' Wallets
- Weaponizing OAST: How Malicious Packages Exploit npm, PyPI, and RubyGems for Data Exfiltration and Recon
- Skuld Infostealer Returns to npm with Fake Windows Utilities and Malicious Solara Development Packages
- Threat Actor Exposes Playbook for Exploiting npm to Build Blockchain-Powered Botnets