
Lazarus Group, Linked to North Korea, Deceives Developers with Malicious npm Packages
CybercrimeCybersecurityResearchThreatscryptocurrencyGitHubLazarus GroupmalwareNorth KoreanpmSocketsoftware security
The Lazarus Group, associated with North Korea, has deceived developers by publishing six new malicious npm packages. These packages, collectively downloaded more than 330 times, were removed by GitHub on Wednesday. Researchers from Socket discovered that these packages contained malware.