-= Per source details. Do not edit below this line.=-
Lazarus Group targeting blockchain and cryptocurrency companies by exploiting software supply chains through malicious npm packages and social engineering tactics
{ "malicious-packages-origins": [ { "modified_time": "2023-08-21T20:12:58Z", "ranges": [ { "type": "SEMVER", "events": [ { "introduced": "0" } ] } ], "source": "checkmarx", "import_time": "2023-08-23T13:55:32.281693395Z", "sha256": "421081a4101ed61796fd72e7dec62cafa098a1d01934298a2ef82ef7187c4934" }, { "modified_time": "2024-06-25T12:29:38Z", "id": "RLMA-2024-00413", "source": "reversing-labs", "versions": [ "1.6.1", "1.5.8", "1.5.7" ], "import_time": "2024-06-28T02:42:02.981641541Z", "sha256": "d5644ed9097637d9b356a0076979ba5c95b8218f4bfd2f3b6756878df8c699b2" } ], "iocs": { "domains": [ "cryptopriceoffer.com", "npmjscloud.com", "npmrepos.com", "tradingprice.net", "npmjsregister.com", "npmcloudjs.com", "bi2price.com", "npmaudit.com", "coingeckoprice.com" ] } }