Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

For Eclipse, the $2.5 billion Cerebras win is just the beginning of realizing its physical world thesis

Elon Musk’s SpaceXAI has been hemorrhaging staff since its merger

Poppy debuts a proactive AI assistant to help you organize your digital life

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Elon Musk’s SpaceXAI has been hemorrhaging staff since its merger

    17 May 2026

    Research repository ArXiv will ban authors for a year if they let AI do all the work

    17 May 2026

    OpenAI launches ChatGPT for personal finance, it will let you connect bank accounts

    16 May 2026

    Silicon Valley vacation land needs a new energy provider as artificial intelligence raises prices

    16 May 2026

    Runway started by helping filmmakers. Now he wants to beat Google in artificial intelligence.

    15 May 2026
  • Apps

    Poppy debuts a proactive AI assistant to help you organize your digital life

    17 May 2026

    WhatsApp adds an incognito feature to Meta AI chats

    17 May 2026

    Instagram’s new ‘Instants’ feature combines elements from Snapchat and BeReal

    16 May 2026

    How to disable Instagram’s new Instants feature and recall accidentally shared photos

    16 May 2026

    Osaurus brings both local and cloud AI models to your Mac

    15 May 2026
  • Crypto

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025
  • Fintech

    Venmo’s biggest makeover in years comes at a very interesting time

    11 May 2026

    Fintech startup Parker files for bankruptcy

    10 May 2026

    Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

    7 May 2026

    PayPal says it’s “becoming a tech company again” — that’s AI

    6 May 2026

    Stripe introduces Link, a digital wallet that autonomous AI agents can also use

    1 May 2026
  • Hardware

    Users are turning to jailbreaking their older Kindles as Amazon ends support

    17 May 2026

    Cerebras raises $5.5 billion, then shares soar to $108, first huge tech IPO of 2026

    15 May 2026

    Google unveils Googlebook, a new line of laptops with native artificial intelligence

    13 May 2026

    The Instax Wide 400 takes the simplicity of instant photography and expands it, literally

    10 May 2026

    Google Unveils Fitbit Air Without Whoop-like Display

    8 May 2026
  • Media & Entertainment

    YouTube viewers watch 2 billion hours of Shorts on TV every month

    14 May 2026

    Digg is trying again, this time as an AI news aggregator

    12 May 2026

    Bravo creates unscripted mini-dramas for the Peacock app

    11 May 2026

    The hottest place for startups to strike a deal? The F1 mantra

    10 May 2026

    Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

    2 May 2026
  • Security

    Instructure strikes against hackers who breached it twice

    17 May 2026

    US lawmakers demand answers from Instructure after Canvas data breaches

    16 May 2026

    US orders Air Force One travelers to throw away gifts, pins and cellphones after trip to China

    16 May 2026

    A hotel check-in system left a million passports and driving licenses open for anyone to see

    15 May 2026

    A spyware researcher exposed Russian government hackers trying to break into Signal accounts

    15 May 2026
  • Startups

    Clio’s $500 million milestone comes just as Anthropic steps up to first stage

    15 May 2026

    Startup Battlefield 200 applications close on May 27

    14 May 2026

    Anduril Raises $5B, Doubles Valuation To $61B

    13 May 2026

    Korea’s biggest manufacturers support Config, TSMC robot data

    11 May 2026

    China’s Moonshot AI Raises $2B in $20B Valuation as Demand for Open Source AI Soars

    10 May 2026
  • Transportation

    Tesla Reveals Two Robotaxi Accidents With Remote Controls

    16 May 2026

    RJ Scaringe has raised more than $12 billion in three startups, and investors still want more

    16 May 2026

    Indian Uber rival Rapido raises $240 million at $3 billion valuation

    15 May 2026

    Uber to open 2 campuses in India to support product development and operations

    14 May 2026

    Rep. Jeff Bezos steps down from Slate Auto board

    14 May 2026
  • Venture

    For Eclipse, the $2.5 billion Cerebras win is just the beginning of realizing its physical world thesis

    17 May 2026

    General Catalyst posted VC rage bait and it worked, especially on a16z

    16 May 2026

    Meridian Ventures Raises $35M Fund to Back MBA-Deferred Founders

    15 May 2026

    Cerebras’ IPO earns Benchmark billions, but VC Eric Vishria almost didn’t get the meeting

    15 May 2026

    Khosla Ventures bets $10 million on Ian Crosby, whose last startup, Bench, collapsed

    14 May 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»North Korea’s hijacking of one of the most widely used open source projects on the Web was likely weeks in the making
Security

North Korea’s hijacking of one of the most widely used open source projects on the Web was likely weeks in the making

techtost.comBy techtost.com7 April 202603 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
North Korea's Hijacking Of One Of The Most Widely Used
Share
Facebook Twitter LinkedIn Pinterest Email

A cyberattack in North Korea that last Monday briefly seized one of the most widely used open source projects on the Web took weeks to carry out as part of a long-running campaign to target the code’s top developers.

The Axios project hack on March 31 was successful in part because it relied on well-equipped hackers building relationships and trust with their intended target over a long period of time to increase their chances of a successful final compromise. This kind of hack highlights the security challenges developers of popular open source projects can face as government hackers and cybercriminals target widely used projects for their ability to access, in some cases, millions of devices worldwide.

Jason Saayman, who maintains the popular Axios project that developers use to connect their applications to the Internet, provided a necropsy with a timeline of the hack. He shared that the hackers began their targeting campaign about two weeks before they finally gained control of his computer to push the malicious code.

Posing as a real company, creating a realistic Slack workspace and using fake profiles of its employees to build credibility, Saayman he said The suspected North Korean hackers then invited him to an online meeting that prompted him to download malware disguised as an update necessary to access the call. Saayman said the lure mimics a technique used by North Korean hackers to trick would-be victims into giving hackers remote access to their system, often to steal their cryptocurrency.

This attack, Saayman said, mimicked earlier hacks attributed to North Korea by Google security researchers.

After compromising and gaining remote access to Saayman’s computer, the hackers then released the malicious updates to the Axios project.

The two Axios malicious packages, pulled about three hours after they were first published on March 31, may still have infected thousands of systems during that window, though the full scope of the massive intrusion is not yet fully clear. Any computer that installed a malicious version of the software during this time may have allowed hackers to steal private keys, credentials, and passwords from that computer, which could lead to further breaches.

Saayman did not immediately respond to an email with questions about the incident.

North Korean hackers remain one of the most active cyber threats on the internet today, accused of stealing at least $2 billion in cryptocurrencies in 2025 alone.

The Kim Jong Un regime remains under international sanctions and is banned from the global financial network for violating a ban on its nuclear weapons development program, which the country largely finances by launching cyber attacks and stealing cryptocurrencies.

North Korea is believed to be in the thousands of highly organized hackers — the majority of whom work against their will under the repressive Kim regime. These hackers spend weeks or months performing complex social engineering attacks with the goal of gaining trust and ultimately access to steal cryptocurrency and data to blackmail their victims.

cyber attack cyber security hijacking Koreas Making North North Korea open open source projects social engineering source web weeks widely
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleWhy safety regulators closed their investigation into Tesla’s remote parking feature
Next Article Adobe launches Acrobat Spaces, a free AI-powered study tool for students
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Instructure strikes against hackers who breached it twice

17 May 2026

US lawmakers demand answers from Instructure after Canvas data breaches

16 May 2026

US orders Air Force One travelers to throw away gifts, pins and cellphones after trip to China

16 May 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

For Eclipse, the $2.5 billion Cerebras win is just the beginning of realizing its physical world thesis

17 May 2026

Elon Musk’s SpaceXAI has been hemorrhaging staff since its merger

17 May 2026

Poppy debuts a proactive AI assistant to help you organize your digital life

17 May 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Venmo’s biggest makeover in years comes at a very interesting time

11 May 2026

Fintech startup Parker files for bankruptcy

10 May 2026

Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

7 May 2026
Startups

Clio’s $500 million milestone comes just as Anthropic steps up to first stage

Startup Battlefield 200 applications close on May 27

Anduril Raises $5B, Doubles Valuation To $61B

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.