A new variation of the fake recruiter campaign from North Korean threat actors is targeting JavaScript and Python developers ...
Compromised dYdX npm and PyPI packages delivered wallet-stealing malware and a RAT via poisoned updates in a software supply chain attack.