MEDIUMSupply Chain
Global

North Korea Behind Slew of JavaScript Supply-Chain Hacks

·Source: Bank Info Security

Updated:

Executive Summary

Amazon Connects npm Hacks to Threat Hacker Known as 'Sapphire Sleet' A slew of attacks against open-source libraries trace back to a financially-motivated North Korean nation-state threat actor, analysis from Amazon Web

Analysis

Amazon Connects npm Hacks to Threat Hacker Known as 'Sapphire Sleet' A slew of attacks against open-source libraries trace back to a financially-motivated North Korean nation-state threat actor, analysis from Amazon Web Services set for publication Thursday finds. Amazon makes the assessment of North Korean responsibility with high confidence.

Indicators of Compromise (2)

URL (1)
https://ismg-cdn.nyc3.cdn.digitaloceanspaces.com/articles/north-korea-behind-slew-javascript-supply-chain-hacks-image_small-3-a-32366.jpg
Domain (1)
ismg-cdn.nyc3.cdn.digitaloceanspaces.com
Source Attribution

Originally published by Bank Info Security on Jul 29, 2026.

Related Threats