thehackernews.com 7/30/2026, 7:20:34 AM · external

North Korea's Sapphire Sleet hijacks npm packages via Amazon links

North Korea's Sapphire Sleet hijacks npm packages via Amazon links
Developing story malware 4 articles tracked
North Korean hackers compromise npm packages in supply chain attack
CyberSIXT Evidence Panel Source marked as original reporting
Threat Actor

THE article discusses a recent cybersecurity threat involving an npm hijack linked to North Korea's Sapphire Sleet group. It outlines how malicious actors exploited vulnerabilities in Amazon links and npm packages, potentially impacting a wide range of software security. Key points include the methods used for the hijack, the implications for software developers, and recommended measures to bolster security against such attacks.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline