Skip to content

// #rust

1 article

💻 AppSec

DPRK's Contagious Interview Campaign Spreads 1,700+ Malicious Packages Across Five Ecosystems

North Korea's UNC1069 (BlueNoroff) threat group has expanded its Contagious Interview supply chain operation to five package registries — npm, PyPI, Go Modules, crates.io, and Packagist — publishing more than 1,700 malicious packages that deliver a cross-platform infostealer and RAT. The operation is the largest coordinated open-source supply chain attack attributed to a nation-state actor.

#north-korea +13