Information security
fromThe Hacker News
4 days agoLazarus Campaign Plants Malicious Packages in npm and PyPI Ecosystems
North Korea-linked Lazarus Group used fake recruitment campaigns to distribute malicious npm and PyPI packages embedded via dependencies in coding-assessment repositories.




