North Korean hackers use malicious npm packages to attack developers

North Korean state criminals were observed pushing malicious packages to the npm registry in an attempt to infiltrate software developer endpoints.

This time, they were discovered by cybersecurity researchers from Phylum, who claim that the ultimate goal of the campaign is to steal people’s cryptocurrency.