{
  "$type": "site.standard.document",
  "bskyPostRef": {
    "cid": "bafyreiauotrbuyfrbd2vm2wi3fr2kazqmrkxanfgdpqtamhkhb4vojl5em",
    "uri": "at://did:plc:gapzbf5nl5wxaqkqoecaeawh/app.bsky.feed.post/3mg7lax76xlh2"
  },
  "path": "/n-korean-famous-chollima-hackers-use-malicious-npm-packages-to-steal-data/",
  "publishedAt": "2026-03-03T20:44:04.000Z",
  "site": "https://devops.com",
  "tags": [
    "DevOps and Open Technologies",
    "DevSecOps",
    "Features",
    "IT Security",
    "News",
    "Social - Facebook",
    "Social - LinkedIn",
    "Social - X",
    "Contagious Interview",
    "Famous Chollima",
    "infostealer",
    "linux",
    "macOS",
    "malicious npm packages",
    "Microsoft Windows",
    "Pastebin",
    "remote access trojan (RAT)",
    "Socket",
    "software developers",
    "typosquatting"
  ],
  "textContent": "A group of more than two dozen malicious npm packages used to steal secrets and credentials from software developers has all the hallmarks – from infrastructure to operations – of Famous Chollima, the North Korean nation-state actor linked to the ongoing high-profile Contagious Interview scam. Threat researchers with Socket and Kieran Miyamoto of the DPRK […]",
  "title": "N. Korean Famous Chollima Hackers Use Malicious npm Packages to Steal Data"
}