Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems


Certains articles de veille peuvent faire l'objet de traduction automatique.


Lazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems

Cybersecurity researchers have discovered a fresh set of malicious packages across npm and the Python Package Index (PyPI) repository linked to a fake recruitment-themed campaign orchestrated by the North Korea-linked Lazarus Group.
The coordinated campaign has been codenamed graphalgo in reference to the first package published in the npm registry. It’s assessed to be active since May 2025.
« 

Source : https://thehackernews.com/2026/02/lazarus-campaign-plants-malicious.html

Publications similaires

février 12, 2026
0 0 votes
Évaluation de l'article

Ce site utilise Akismet pour réduire les indésirables. Découvrez comment les données de vos commentaires sont traitées.

0 Commentaires
plus vieux
nouveaux plus votés