Phemex GoPlus Alerts on 26 Malware Packages from North Korean Hackers
Article Content
Browse articles
GoPlus has issued a warning regarding 26 malware packages released by North Korean hackers on the npm registry. These packages include an installation script that executes malicious code, which downloads and runs a Remote Access Trojan (RAT). Users of the npm registry are advised to be cautious and avoid these packages.
Ask AI about this cluster
Answers cite the sources they use
Updated 182d ago How this analysis works
Timeline
2026-03-03
GoPlus issues warning about 26 malware packages
2026-03-03
Malicious code identified in 'vendor/scrypt-js/version.js'
2026-03-03
Remote Access Trojan (RAT) downloaded via malicious URL
More articles in this cluster (3)
Following this threat?
Track FAMOUS CHOLLIMA in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…