Supply ChainInfosecurity Magazine·3 weeks ago
AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks
AWS has attributed a series of supply chain attacks targeting npm libraries, including the axios campaign, to a North Korean threat actor. The attacks demonstrate ongoing efforts by state-sponsored groups to compromise widely-used open source dependencies for potential downstream impact on developer ecosystems.