Skip to content

North Korean Hackers Abuse Mastra npm Supply Chain to Target Developers and CI/CD Pipelines

Cybersecuritynews Tushar Subhra Dutta June 22, 2026

North Korean hackers have turned a widely used developer tool into a weapon, quietly poisoning more than 140 software packages that developers across the world rely on every day. The campaign is sophisticated, stealthy, and far-reaching, raising urgent questions the safety of the open-source supply chain. The attack targeted the Mastra ecosystem on the […]

Extracted Entities

Attack Types (1)

Companies (1)

Tools (1)