top of page
perceptive_background_267k.jpg

North Korean Hackers Deploy 197 npm Packages to Spread Updated OtterCookie Malware

Published:

28 november 2025 om 16:18:00

Alert date:

5 december 2025 om 08:03:22

Source:

thehackernews.com

Click to open the original link from this advisory

North Korean threat actors behind the Contagious Interview campaign have deployed 197 malicious npm packages to spread an updated variant of OtterCookie malware. These packages have been downloaded over 31,000 times and deliver a malware variant that combines features of BeaverTail and previous OtterCookie versions. The campaign represents a continued supply chain attack targeting the npm registry with malicious packages.

Technical details

Mitigation steps:

Affected products:

npm registry

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page