T1056.001 5
- Inside the GitHub Infrastructure Powering North Korea's Contagious Interview npm Attacks
- Surveillance Malware Hidden in npm and PyPI Packages Targets Developers with Keyloggers, Webcam Capture, and Credential Theft
- Another Wave: North Korean Contagious Interview Campaign Drops 35 New Malicious npm Packages
- Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
- Typosquatting Cryptographic Libraries: Malicious npm Packages Threaten Crypto Developers with Keylogging and Wallet Theft