News Score: Score the News, Sort the News, Rewrite the Headlines

Amazon links four poisoned npm packages to one North Korean crew

cyber-crime Researchers say Sapphire Sleet socially engineered maintainers before publishing malicious updates through trusted accounts Amazon has linked the compromises of four npm packages over the past 18 months, saying they were all the work of the same North Korean crew.In research published this week, AWS attributed the activity with medium confidence to the North Korea-linked group tracked as Sapphire Sleet, which is widely regarded as a Lazarus Group offshoot. Rather than exploiting zero...

Read more at theregister.com

© News Score  score the news, sort the news, rewrite the headlines