Skip to main content
CyberConfirmedMediumDeveloping
6.0

North Korean actors execute supply chain attack on Rust ecosystem via poisoned arrayref crate

Threat actors linked to North Korea compromised the 'arrayref' Rust crate by injecting a malicious dependency designed to exfiltrate data from remote servers. This incident highlights a persistent trend of state-sponsored actors targeting open-source software repositories to facilitate supply chain compromises.

SecurityWeek3 days agoKPengCredibility 56%View source

Score Breakdown

Mosaic Score6.0
Confidence0.9
Significance0.5
Source credibility0.6

Intelligence Tags

Entities

countrycountryconcept
Source

Related signals

8 found