National Cyber Warfare Foundation (NCWF) Forums


Bogus npm Packages Used to Trick Software Developers into Installing Malware


0 user ratings
2024-04-27 05:58:30
milo
Developers

 - archive -- 
An ongoing social engineering campaign is targeting software developers with bogus npm packages under the guise of a job interview to trick them into downloading a Python backdoor.
Cybersecurity firm Securonix is tracking the activity under the name DEV#POPPER, linking it to North Korean threat actors.
"During these fraudulent interviews, the developers are often asked



Source: TheHackerNews
Source Link: https://thehackernews.com/2024/04/bogus-npm-packages-used-to-trick.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Developers



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.