{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreiauotrbuyfrbd2vm2wi3fr2kazqmrkxanfgdpqtamhkhb4vojl5em",
"uri": "at://did:plc:gapzbf5nl5wxaqkqoecaeawh/app.bsky.feed.post/3mg7lax76xlh2"
},
"path": "/n-korean-famous-chollima-hackers-use-malicious-npm-packages-to-steal-data/",
"publishedAt": "2026-03-03T20:44:04.000Z",
"site": "https://devops.com",
"tags": [
"DevOps and Open Technologies",
"DevSecOps",
"Features",
"IT Security",
"News",
"Social - Facebook",
"Social - LinkedIn",
"Social - X",
"Contagious Interview",
"Famous Chollima",
"infostealer",
"linux",
"macOS",
"malicious npm packages",
"Microsoft Windows",
"Pastebin",
"remote access trojan (RAT)",
"Socket",
"software developers",
"typosquatting"
],
"textContent": "A group of more than two dozen malicious npm packages used to steal secrets and credentials from software developers has all the hallmarks – from infrastructure to operations – of Famous Chollima, the North Korean nation-state actor linked to the ongoing high-profile Contagious Interview scam. Threat researchers with Socket and Kieran Miyamoto of the DPRK […]",
"title": "N. Korean Famous Chollima Hackers Use Malicious npm Packages to Steal Data"
}