North Korea Targeted npm Packages in Axios Supply Chain Attack
North Korean state-sponsored threat actors successfully compromised the npm ecosystem by targeting the widely-used axios HTTP client library. Before the main attack, threat actors practiced on a lesser-known npm package, refining their techniques. This sophisticated supply chain attack demonstrates