


Perceptive Security
SOC/SIEM Consultancy

North Korean Hackers Deploy 197 npm Packages to Spread Updated OtterCookie Malware
Published:
28 november 2025 om 16:18:00
Alert date:
5 december 2025 om 08:03:22
Source:
thehackernews.com

North Korean threat actors behind the Contagious Interview campaign have deployed 197 malicious npm packages to spread an updated variant of OtterCookie malware. These packages have been downloaded over 31,000 times and deliver a malware variant that combines features of BeaverTail and previous OtterCookie versions. The campaign represents a continued supply chain attack targeting the npm registry with malicious packages.
Technical details
Mitigation steps:
Affected products:
npm registry
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.