Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Sriram Krishnan steps down from role as White House AI adviser

TikTok launches TikTok Pro Events, an app for cultural moments like the FIFA World Cup

What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Sriram Krishnan steps down from role as White House AI adviser

    7 June 2026

    AirTrunk commits $30 billion to build 5 GW AI data centers in India

    6 June 2026

    Google will pay SpaceX $920 million per month for computing

    6 June 2026

    The Token Bill Is Coming: Industry Insiders Struggle to Manage Artificial Intelligence’s Costs

    5 June 2026

    Ahead of IPO, Anthropic’s Daniela Amodei Dispels Doubts About AI Returns

    5 June 2026
  • Apps

    TikTok launches TikTok Pro Events, an app for cultural moments like the FIFA World Cup

    7 June 2026

    Beyond Instagram: Introducing the next generation of social apps

    6 June 2026

    The cash app launches a stick for tap-and-pay

    6 June 2026

    Meta introduces a new AI creator assistant to Facebook

    5 June 2026

    Apple approves Poke as first AI agent on Messages for Business platform

    5 June 2026
  • Crypto

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026
  • Fintech

    Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

    5 June 2026

    Last 24 hours to save up to $410 on your Disrupt 2026 ticket

    29 May 2026

    2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

    28 May 2026

    Robinhood now allows your AI agents to trade stocks

    28 May 2026

    Disrupt 2026 Early Bird ticket savings expire in 3 days

    27 May 2026
  • Hardware

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    7 June 2026

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    5 June 2026

    Oura Ring 5 review: Thinner, lighter, better

    4 June 2026

    Meta mercifully released the VR fitness game Supernatural instead of just killing it

    4 June 2026

    Apple’s MacBook Neo is winning over a new generation of buyers

    3 June 2026
  • Media & Entertainment

    Plex adds new social features ahead of major price hike for its lifetime pass

    6 June 2026

    Startup Battlefield 200 applications officially close in 3 days

    5 June 2026

    Founders Fund Launches Series of Games Starring Sam Altman, Palmer Luckey and Other Tech Elites

    5 June 2026

    Meet Wander, a StumbleUpon-inspired tool for discovering the ‘small web’

    4 June 2026

    Publishers will be able to opt out of AI Search, thanks to the new setting

    4 June 2026
  • Security

    Google and FBI warn of ransomware group sending fake IT workers to hack victims in person

    6 June 2026

    Former cyber executive-turned-whistleblower accuses IBM of covering up multiple data breaches

    5 June 2026

    Filtr is a new privacy tool that blocks ads in almost every iPhone and Mac app

    5 June 2026

    Chinese spies use LinkedIn to trick Westerners into sharing sensitive information

    4 June 2026

    Instagram alerts users targeted by hackers during AI chatbot attacks

    4 June 2026
  • Startups

    Sam Altman-backed fusion startup Helion raises $465M to build power plant for Microsoft

    6 June 2026

    Supabase doubles valuation to $10 billion in 8 months

    5 June 2026

    Startup Battlefield is back in Australia — here’s what happened last time we came to Sydney

    5 June 2026

    Focused Energy raises massive $240M Series A for laser-powered fusion technology

    4 June 2026

    Quick Commerce FirstClub Doubles Valuation to $255M in Nine Months

    4 June 2026
  • Transportation

    As VC-backed e-bike startups went bankrupt, Lectric by bootstraps grew

    6 June 2026

    GM’s electric future depends on a new battery — and this facility

    6 June 2026

    Carvana ties up with Bezos-backed Slate Auto as it plans new car sales

    4 June 2026

    Uber will roll out 500 data collection vehicles this year

    4 June 2026

    Squishmallows, dentures and an ‘I Heart Hot Dads’ bag: Uber found thousands of items left in robotaxis

    3 June 2026
  • Venture

    Founders share VC horror stories and some name names

    6 June 2026

    Defense technology, artificial intelligence and fundraising take center stage at StrictlyVC Los Angeles

    5 June 2026

    Benchmark raises its first growth capital as part of $2 billion capital raising

    4 June 2026

    Former Meta CTO Raises $250 Million Climate Fund

    3 June 2026

    Because VivaTech 2026 is the place to see Europe’s AI strategy taking shape

    3 June 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»North Korea’s hijacking of one of the most widely used open source projects on the Web was likely weeks in the making
Security

North Korea’s hijacking of one of the most widely used open source projects on the Web was likely weeks in the making

techtost.comBy techtost.com7 April 202603 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
North Korea's Hijacking Of One Of The Most Widely Used
Share
Facebook Twitter LinkedIn Pinterest Email

A cyberattack in North Korea that last Monday briefly seized one of the most widely used open source projects on the Web took weeks to carry out as part of a long-running campaign to target the code’s top developers.

The Axios project hack on March 31 was successful in part because it relied on well-equipped hackers building relationships and trust with their intended target over a long period of time to increase their chances of a successful final compromise. This kind of hack highlights the security challenges developers of popular open source projects can face as government hackers and cybercriminals target widely used projects for their ability to access, in some cases, millions of devices worldwide.

Jason Saayman, who maintains the popular Axios project that developers use to connect their applications to the Internet, provided a necropsy with a timeline of the hack. He shared that the hackers began their targeting campaign about two weeks before they finally gained control of his computer to push the malicious code.

Posing as a real company, creating a realistic Slack workspace and using fake profiles of its employees to build credibility, Saayman he said The suspected North Korean hackers then invited him to an online meeting that prompted him to download malware disguised as an update necessary to access the call. Saayman said the lure mimics a technique used by North Korean hackers to trick would-be victims into giving hackers remote access to their system, often to steal their cryptocurrency.

This attack, Saayman said, mimicked earlier hacks attributed to North Korea by Google security researchers.

After compromising and gaining remote access to Saayman’s computer, the hackers then released the malicious updates to the Axios project.

The two Axios malicious packages, pulled about three hours after they were first published on March 31, may still have infected thousands of systems during that window, though the full scope of the massive intrusion is not yet fully clear. Any computer that installed a malicious version of the software during this time may have allowed hackers to steal private keys, credentials, and passwords from that computer, which could lead to further breaches.

Saayman did not immediately respond to an email with questions about the incident.

North Korean hackers remain one of the most active cyber threats on the internet today, accused of stealing at least $2 billion in cryptocurrencies in 2025 alone.

The Kim Jong Un regime remains under international sanctions and is banned from the global financial network for violating a ban on its nuclear weapons development program, which the country largely finances by launching cyber attacks and stealing cryptocurrencies.

North Korea is believed to be in the thousands of highly organized hackers — the majority of whom work against their will under the repressive Kim regime. These hackers spend weeks or months performing complex social engineering attacks with the goal of gaining trust and ultimately access to steal cryptocurrency and data to blackmail their victims.

cyber attack cyber security hijacking Koreas Making North North Korea open open source projects social engineering source web weeks widely
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleWhy safety regulators closed their investigation into Tesla’s remote parking feature
Next Article Adobe launches Acrobat Spaces, a free AI-powered study tool for students
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Google and FBI warn of ransomware group sending fake IT workers to hack victims in person

6 June 2026

Former cyber executive-turned-whistleblower accuses IBM of covering up multiple data breaches

5 June 2026

Filtr is a new privacy tool that blocks ads in almost every iPhone and Mac app

5 June 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Sriram Krishnan steps down from role as White House AI adviser

7 June 2026

TikTok launches TikTok Pro Events, an app for cultural moments like the FIFA World Cup

7 June 2026

What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

7 June 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

5 June 2026

Last 24 hours to save up to $410 on your Disrupt 2026 ticket

29 May 2026

2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

28 May 2026
Startups

Sam Altman-backed fusion startup Helion raises $465M to build power plant for Microsoft

Supabase doubles valuation to $10 billion in 8 months

Startup Battlefield is back in Australia — here’s what happened last time we came to Sydney

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.