North Korea-linked group tied to Mastra AI npm supply-chain attack

1 min read
Source: BleepingComputer
North Korea-linked group tied to Mastra AI npm supply-chain attack
Photo: BleepingComputer
TL;DR Summary

Microsoft attributes the Mastra AI npm supply-chain attack to North Korea's Sapphire Sleet/BlueNoroff after attackers hijacked an npm maintainer to publish 140+ malicious Mastra packages; the malicious typosquat dependency easy-day-js drops a cross-platform info stealer that exfiltrates credentials and crypto-wallet data across Windows, Linux, and macOS, disables TLS verification, contacts attacker C2, and uses OS-specific persistence and a PowerShell backdoor.

Share this article

Reading Insights

Total Reads

0

Unique Readers

19

Time Saved

4 min

vs 5 min read

Condensed

93%

81860 words

Want the full story? Read the original article

Read on BleepingComputer