The campaign of the New Lazarus group sees North Korean pirates distribute undetectable malware via Github and open source packages


  • Security researchers discovered a malicious code in NPM and Github Commites packages
  • The code was linked to an account operated by Lazarus
  • More than 200 victims have been confirmed so far

Lazarus Group, a sadly famous threat actor sponsored by the North Korean state, manages campaign targeting software and web developers with “undetectable” malware.

Cybersecurity researchers at the SecurScorecarde strike said they observed that malware was integrated into GitHub standards and NPM packages, where the developers without distrust collect them and integrate into their own projects.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top