North Korean Hackers Flood npm Registry with XORIndex Malware in Ongoing Attack Campaign
The North Korean threat actors linked to the Contagious Interview
campaign have been observed publishing another set of 67 malicious
packages to the npm registry, underscoring ongoing attempts to
poison the open-source ecosystem via software supply chain attacks.
The packages, per Socket, have attracted more than 17,000
downloads, and incorporate a previously undocumented version of a
malware
Read more https://thehackernews.com/2025/07/north-korean-hackers-flood-npm-registry.html