cognitive cybersecurity intelligence

News and Analysis

Search

North Korean APT Lazarus Compromises Developers via Malicious NPM Packages

North Korean hacking group, Lazarus, is using the malicious Node Package Manager (NPM) package, postcss-optimizer, for a supply chain attack on developers. Once installed, it deploys the BeaverTail malware, which collects credentials and other sensitive data, while executing additional payloads. The malware targets Windows, macOS, and Linux systems. Lazarus continually targets high-value technology and cryptocurrency sectors.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts