2 articles and related resources
Amazon identifies North Korean group SAPPHIRE SLEET behind recent open-source supply chain attacks, compromising popular NPM libraries.
On March 31, 2026, North Korean hackers compromised the Axios npm package, highlighting critical vulnerabilities in the software supply chain.