“It wasn’t opportunism. It was precision.” — How North Korean hackers used Microsoft Teams and Slack to compromise Windows PCs with a sophisticated trick


It’s been nearly a week since North Korea’s suspected hackers got out of a temporary reprieve axiosis one of the most popular JavaScript HTTP client libraries in the world. Now more details are emerging about how the hack was achieved and why it was needed Windows, macOSand Linux users.

The original hack occurred when bad actors were able to compromise the main account of axios administrator Jason Saayman. This allowed two malicious axios versions to be published on npm (a massive registry of tools available for download) March 30, 2026.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *