Tartışma

North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

Başlatan The Hacker News · 03 Tem 2026 19:33 · 25 Görüntülenme · 0 Yanıtlar
Konuyu Açan #0
Threat actors with ties to North Korea have been linked to a fresh set of malicious npm packages that masquerade as Rollup polyfill tooling to facilitate remote access and data theft. According to JFrog, the packages "rollup-packages-polyfill-core" and "rollup-runtime-polyfill-core" mimic the legitimate "rollup-plugin-polyfill-node" project, down to the description, repository metadata, and

Okumaya devam et...

Yanıt vermek için giriş yapmış olmalısınız.

0 alıntı seçildi