North Korea's hijack of one of the web's most used open source projects was likely weeks in the making
Airfind news item
By Zack Whittaker
Published on April 6, 2026.
North Korea's cyberattack on the Axios project, one of the most popular open source projects on the web, took several weeks to complete. The hackers used a sophisticated social engineering campaign to gain access to their target, posing as a real company and posing with fake profiles of its employees to gain trust. They then invited developer Jason Saayman to a web meeting and then released malicious updates to the project. The attack may have infected thousands of systems during this time, potentially leading to further breaches. North Korean hackers are believed to have stolen at least $2 billion in cryptocurrency in 2025 alone. The country remains under international sanctions for violating a ban on its nuclear weapons development program.
Read Original Article