Lazarus Campaign Injects Malicious Packages into npm and PyPI Ecosystems
Cybersecurity researchers have uncovered a new wave of malicious packages in the npm and Python Package Index (PyPI) ecosystems linked to the North Korea-backed Lazarus Group. The campaign, dubbed graphalgo, has been active since May 2025 and leverages fake recruitment efforts to compromise developer systems. Campaign Overview Attackers create a convincing narrative around a fictitious company […]
Lazarus Campaign Injects Malicious Packages into npm and PyPI Ecosystems Read More »









